Filters
Question type

Study Flashcards

Incident response is defined as reacting to incidents impromptu.

Correct Answer

verifed

verified

In an IDS, ________ means that the IDS should report all attacks events and report as few false alarms as possible.


A) precision
B) event correlation
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

Restoration of data files from tape ________.


A) is the fastest recovery method
B) always results in data loss
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

18 U.S.C. ยง 1030 protects ________.


A) all computers
B) "protected computers" such as government computers
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

A NIDS can ________.


A) see all packets passing through its position in a network
B) scan encrypted data
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

If a defendant has already been prosecuted in a criminal trial, he or she cannot later be tried in a civil trial.

Correct Answer

verifed

verified

The normal standard for deciding a case in ________ trials is guilt beyond a reasonable doubt.


A) civil
B) criminal
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

Rehearsals improve ________.


A) accuracy
B) speed
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

________ of response is critical.


A) Accuracy
B) Speed
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

What protection can a firm provide for people in the event of an emergency?


A) Not allowing people to go into an unsafe environment
B) Accounting for all staff immediately
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

An IDS is a ________ control.


A) preventative
B) detective
C) restorative
D) All of the above

Correct Answer

verifed

verified

Who should head the CSIRT?


A) IT
B) IT security
C) A senior manager
D) None of the above

Correct Answer

verifed

verified

Live tests are ________.


A) more effective than walkthroughs
B) inexpensive
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

Precedents can be created by ________.


A) U.S. Circuit Courts of Appeal.
B) U.S. District Courts
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

________ specify how a company will maintain or restore core business operations after disasters.


A) Business continuity plans
B) IT disaster recovery plans
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

Disconnection ________.


A) is the most decisive way to do termination
B) harms legitimate users
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

Black holing is an effective long-term containment solution.

Correct Answer

verifed

verified

False alarms in an IDS are known as ________.


A) false positives
B) false negatives
C) pranks
D) noise

Correct Answer

verifed

verified

The only person who should speak on behalf of a firm should be ________.


A) the public relations director
B) the firm's legal counsel
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

IDS false alarms cause ________.


A) companies to ignore IDS alerts
B) companies to install multiple IDSs using different methods
C) Both A and B
D) Neither A nor B

Correct Answer

verifed

verified

Showing 41 - 60 of 107

Related Exams

Show Answer