Protection of Information Assets Flashcards
7 cards from real ISACA practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Protection of Information Assets flashcards as text
Which of the following cloud deployment models gives an organization the MOST control over its security configurations?
Answer: Private cloud
A private cloud is dedicated to a single organization, giving it full control over security configurations, policies, and infrastructure.
An IS auditor reviewing an organization's key management practices should verify that cryptographic keys are:
Answer: Generated using approved algorithms and protected throughout their lifecycle
Effective key management requires keys to be generated with approved algorithms and protected (encrypted, access-controlled) across their entire lifecycle.
Which of the following BEST describes a man-in-the-middle (MITM) attack?
Answer: An attacker secretly intercepts and potentially alters communications between two parties
In a MITM attack, the attacker secretly positions themselves between two communicating parties to intercept, read, or modify data.
Which of the following is the MOST important consideration when implementing a data classification scheme?
Answer: Controls applied to data must be commensurate with the value and sensitivity of the data
Security controls should be proportional to the value and sensitivity of the data to balance protection costs with the actual risk.
A port scan reveals that TCP port 23 is open on a server. What risk does this MOST likely indicate?
Answer: Telnet is running, transmitting credentials in plaintext
TCP port 23 is the default port for Telnet, which transmits all data including passwords in cleartext, posing a significant confidentiality risk.
Which of the following BEST describes the principle of least privilege?
Answer: Users should be given only the minimum access rights necessary to perform their job functions
The principle of least privilege limits user access rights to only what is necessary to perform authorized tasks, reducing the attack surface.
Which of the following is the PRIMARY objective of a security operations center (SOC)?
Answer: To continuously monitor, detect, and respond to cybersecurity incidents
A SOC provides 24/7 monitoring and response capabilities to detect, analyze, and contain security incidents in real time.