test 3

docx

School

Seneca College *

*We aren’t endorsed by this school

Course

100

Subject

Information Systems

Date

Dec 6, 2023

Type

docx

Pages

3

Uploaded by ElderLeopardMaster1065

Report
1. Question 1 0/0 Final Grade: 0 points out of 0 points possible Do you promise to uphold the Academic Integrity values of Integrity and Honesty while doing this quiz? Hide answer choices 1. No, I do not. 2. Correct: I do. Correct answer 2. Question 2 1/1 Final Grade: 1 point out of 1 point possible An employee complains they cannot access a policy and when they did see it, it was using terms they did not understand. What criteria are not being met? Your Answer The criteria that was not meant is Dissemination and Comprehension meaning it was not available and not understandable. 3. Question 3 1/1 Final Grade: 1 point out of 1 point possible Any change within an environment carries some form of risk. What rule should you apply when dealing with change and explain why. Your Answer Rule of Change should be applied. As said change comes with risk so before a change is brought into the system, the risks this change brings into the system must be assessed, vulnerabilities analyzed to know exactly the threats this change will have on your system. You can not just mindlessly import change into a secure system you must know the exact details of what change you are doing and the effect it will have on the system. 4. Question 4 1/1 Final Grade: 1 point out of 1 point possible In terms of network communications, what is the structure of a IP Packet ? Your Answer An IP packet consists of the the header and the data it contains. The header contains the the source address and destination address. The header of the IP address tells exactly where the source is coming from and where exactly it is going. 5. Question 5 0/1 Final Grade: 0 points out of 1 point possible What is the difference between Regulatory compliance and Industry compliance?
Your Answer Regulatory compliance is the adherence of the rules of your organization while in industry compliance not adhering to the rules will have drastic effects on your organization. Now in regulatory compliance non compliance of course will result in the usual fines but may not have severe effects on your company where as in industry compliance non compliance can result in certain rights of your company being taking away. 6. Question 6 1/1 Final Grade: 1 point out of 1 point possible For a policy to be enforceable, it must meet five (5) criteria, name and explain two of them. Your Answer Dissemination: For a policy to be enforceable it should be readily available to who needs it. If a policy is not available to those it concerns how can it be enforced. Review: For a policy to be enforced it should be readable. 7. Question 7 1/1 Final Grade: 1 point out of 1 point possible You have brought a new laptop for college. Briefly describe how you could apply the Rule of Least Privilege to your new laptop. Give two (2) examples. Your Answer Now rule of least privilege means that people should only get access to what you require and no more. Now on my laptop, I will make my password only known to me as no one besides me will need to know my password to perform my functions. Another way of applying the rule of lease privilege is that I should only download software I directly need, the more software I download for no reason increases the risks I introduce into my laptop. 8. Question 8 1/1 Final Grade: 1 point out of 1 point possible Having good practices around the installation of software and website browsing is demonstrating which if Day’s virtues . Your Answer It is demonstrating virtue of Education. 9. Question 9 1/1 Final Grade: 1 point out of 1 point possible Explain The Virtue of Daily Consideration. Your Answer Virtue of daily consideration means that security should be a daily thought. Every action or change done on the system must be done while thinking about security. If you wait to be hacked and then secure your system using that method there are countless ways your system can be comprised so this will be an endless
cycle. So everything done to your system must be done while thinking about security. 10. Question 10 1/1 Final Grade: 1 point out of 1 point possible Why is maintenance important to the Rule of the Three-Fold Process in terms of security. Your Answer Everything at some point in life has to be maintained. If you wait until a system or method is comprised to be maintained or fixed then the point of security is pointless. Security is aimed at protecting a system from harm not trying to fix the harm done. So in the three fold process maintenance ensures that the controls put in place are checked on and ensured they still do the their desired function and if the don't then they should be altered. 11. Question 11 0/1 Final Grade: 0 points out of 1 point possible What is the role of a port on a network? Your Answer A port on a network tells the router or switch where exactly the data should be sent to.
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help