Which of the following statements pertaining to a Criticality Survey is incorrect?
The Criticality Survey is implemented through a standard questionnaire to gather input from the most knowledgeable people. Not all personnel that is going to be part of recovery teams is necessarily able to help in identifying critical functions of the organization.
The intent of such a survey is to identify the services and systems that are critical to the organization.
Having a clearly stated purpose for the survey helps in avoiding misinterpretations.
Management's approval of the survey should be obtained before distributing it.
Source: HARE, Chris, CISSP Study Guide: Business Continuity Planning Domain,
Kerberos is vulnerable to replay in which of the following circumstances?
Replay can be accomplished on Kerberos if the compromised tickets are used within an allotted time window.
The security depends on careful implementation:enforcing limited lifetimes for authentication credentials minimizes the threat of of replayed credentials, the KDC must be physically secured, and it should be hardened, not permitting any non-kerberos activities.
Official ISC2 Guide to the CISSP, 2007 Edition, page 184
also see:
KRUTZ, Ronald L. & VINES, Russel D., The CISSP Prep Guide: Mastering the Ten Domains of Computer Security, 2001, John Wiley & Sons, Page 42.
Due care is not related to:
Officers and directors of a company are expected to act carefully in fulfilling their tasks. A director shall act in good faith, with the care an ordinarily prudent person in a like position would exercise under similar circumstances and in a manner he reasonably believes is in the best interest of the enterprise. The notion of profit would tend to go against the due care principle.
Source: ANDRESS, Mandy, Exam Cram CISSP, Coriolis, 2001, Chapter 10: Law, Investigation, and Ethics (page 186).
What is the most critical characteristic of a biometric identifying system?
Accuracy is the most critical characteristic of a biometric identifying verification system.
Accuracy is measured in terms of false rejection rate (FRR, or type I errors) and false acceptance rate (FAR or type II errors).
The Crossover Error Rate (CER) is the point at which the FRR equals the FAR and has become the most important measure of biometric system accuracy.
Source: TIPTON, Harold F. & KRAUSE, Micki, Information Security Management Handbook, 4th edition (volume 1), 2000, CRC Press, Chapter 1, Biometric Identification (page 9).
Related to information security, integrity is the opposite of which of the following?
Integrity is the opposite of 'alteration.'
Source: KRUTZ, Ronald L. & VINES, Russel D., The CISSP Prep Guide: Mastering the Ten Domains of Computer Security, 2001, John Wiley & Sons, Page 59.
Joesph
9 days agoMammie
2 months agoAlisha
3 months agoBo
3 months agoEve
3 months agoParis
4 months agoVesta
4 months agoMing
4 months agoBok
5 months agoMaryann
5 months agoValentine
5 months agoKeshia
5 months agoSocorro
6 months agoMonte
6 months agoHan
6 months agoDelbert
6 months agoGerri
7 months agoLawanda
7 months agoDalene
7 months agoScarlet
7 months agoLavonda
7 months agoJunita
8 months agoCherry
8 months agoColette
8 months agoNohemi
8 months agoHubert
8 months agoDalene
8 months agoMertie
9 months agoMicah
9 months agoKayleigh
9 months agoAretha
9 months agoAlita
9 months agoEun
11 months agoShannon
12 months agoNettie
12 months ago