欢迎来到天天文库
浏览记录
ID:13578458
大小:163.50 KB
页数:36页
时间:2018-07-23
《思科认证(cisco)题2》由会员上传分享,免费在线阅读,更多相关内容在行业资料-天天文库。
1、101.Whichriskmanagementmethodologyusestheexposurefactormultipliedbytheassetvaluetodetermineitsoutcome?A.AnnualizedLossExpectancyB.SingleLossExpectancyC.AnnualizedRateofOccurrenceD.InformationRiskManagementAnswer:BSingleLossExpectancy(SLE)ANSLEisthedollarfigurethatisassigned
2、toasingleevent.Itrepresentsanorganization'slossfromasinglethreatandisderivedfromthefollowingformula:AssetValue($)XExposureFactor(EF)=SLE-RonaldKrutzTheCISSPPREPGuide(goldedition)pg18102.Thealternateprocessingstrategyinabusinesscontinuityplancanprovideforrequiredbackupcomput
3、ingcapacitythroughahotsite,acoldsite,orA.Adial-upservicesprogram.B.Anoff-sitestoragereplacement.C.Anonlinebackupprogram.D.Acrateandshipreplacement.Answer:CWhatIbelieveisbeingwantedhereisnottheotherdatacenterbackupalternativesbuttransactionredundancyimplementation.TheCISSPca
4、ndidateshouldunderstandthethreeconceptsusedtocreatealeveloffaulttoleranceandredundancyintransactionprocessing.Whiletheseprocessesarenotusedsolelyfordisasterrecovery,theyareoftenelementsofalargerdisasterrecoveryplan.Ifoneormoreoftheseprocessesareemployed,theabilityofacompany
5、togetbackonlineisgreatlyenhanced.-RonaldKrutzTheCISSPPREPGuide(goldedition)pg394(theyareElectronicVaulting,Remotejournaling,andDatabaseshadowing)103.Openboxtesting,intheFlawHypothesisMethodologyofPenetrationTestingappliestotheanalysisofA.RoutersandfirewallsB.Host-basedIDSsy
6、stemsC.Network-basedIDSsystemsD.GeneralpurposeoperatingsystemsAnswer:DFlawHypothesisMethodology-Asystemanalysisandpenetrationtechniquewherespecificationsanddocumentationforthesystemareanalyzedandthenflawsinthesystemarehypothesized.Thelistofhypothesizedflawsisthenprioritized
7、onthebasisoftheestimatedprobabilitythataflawactuallyexistsand,assumingaflawdoesexist,ontheeaseofexploitingitandontheextentofcontrolorcompromiseitwouldprovide.Theprioritizedlistisusedtodirecttheactualtestingofthesystem.http://www.kernel.org/pub/linux/libs/security/Orange-Lin
8、ux/refs/Orange/Orange0-5.html104.Inachangecontrolenvironment,whichoneofthefollowin
此文档下载收益归作者所有