Business > EXAM > FedVTE Cyber Risk Management for Technicians 25 Questions with Verified Answers,100% CORRECT (All)

FedVTE Cyber Risk Management for Technicians 25 Questions with Verified Answers,100% CORRECT

Document Content and Description Below

FedVTE Cyber Risk Management for Technicians 25 Questions with Verified Answers In order to automate host characteristic monitoring you can compare baselines and snapshots with syslog. - CORRECT AN... SWER False The following should be taken into account when accepting the residual risk inherent in the project. - CORRECT ANSWER All of the above What is the high water mark for an information system? - CORRECT ANSWER Highest Potential Impact value assigned to each Security Objective (AIC) for all Security Categories resident on the system and the overall classification of the system. Which of the following describes NetScan Tools Pro? - CORRECT ANSWER D. A collection of Internet information gathering and network troubleshooting utilities FIPS 200 is: - CORRECT ANSWER A short document that describes the minimum security requirements for information and information systems Which risk comes from a failure of the controls to properly mitigate risk? - CORRECT ANSWER C. Control Risk Open Source Security (OSSEC) is what? - CORRECT ANSWER A host based security system that monitors for changes What tool would be best to automatically detect your network and construct a complete and easy to view network map? - CORRECT ANSWER LANsurveyor Which NIST special publication is a guide for Applying the Risk Management Framework to Federal Information Systems: A Security Life Cycle Approach? - CORRECT ANSWER NIST SP 800 37 Which of the following is a part of the Examine Method? - CORRECT ANSWER Inspecting the physical security measures If the cost of controls exceeds the benefit the organization may choose to accept the risk instead. - CORRECT ANSWER True Which of the following families of controls belongs to the technical class of controls? - CORRECT ANSWER Identification and Authentication Which tier of Risk Management is associated with Enterprise Architecture? - CORRECT ANSWER Tier 2 Mission (Business Process) In NIST SP 800 53 the security control structure consists of all the following components except for: - CORRECT ANSWER All of these are in the security control structure: - Priority and baseline allocation - Supplemental guidance - Control enhancements Kismet is different from a normal network sniffer such as Wireshark or tcpdump because it separates and identifies different wireless networks in the area. - CORRECT ANSWER True What is the order of the Change Control Process? - CORRECT ANSWER B. Request : Impact Assessment : Approval : Build and or Test : Implement The threat source is highly motivated and sufficiently capable and controls to prevent the vulnerability from being exercised are ineffective. Which likelihood rating does this describe? - CORRECT ANSWER High Which of the following is not part of the process for assessing security controls according to NIST SP 800 53A 1? - CORRECT ANSWER A. Study Which step of a risk assessment uses the history of system attacks? - CORRECT ANSWER Step 2: Threat Identification In risk management people and information and technology are examples of? - CORRECT ANSWER Assets What type of analysis involves using scales to suit circumstances and allows for quick identification of potential risks as well as vulnerable assets and resources? - CORRECT ANSWER C. Qualitative Analysis NIST SP 800 30 defines risk as a function of the likelihood of a given threat source exercising a particular potential vulnerability and the resulting impact of that adverse event on the organization. - CORRECT ANSWER True One strategy for determining the proper level of acceptable risk is to: - CORRECT ANSWER Determine a point where cost of mitigation is less than cost of loss Which OCTAVE process involves collecting information about important assets and security requirements and threats and current organizational strengths and vulnerabilities from managers of selected operational areas? - CORRECT ANSWER Identify Operational Area Knowledge Which of the following is a step in detecting and analysing host changes? - CORRECT ANSWER All of the above : - Create a current snapshot of your host - Create a baseline of your host - Compare your snapshot to your baseline [Show More]

Last updated: 8 months ago

Preview 1 out of 3 pages

Add to cart

Instant download


Buy this document to get the full access instantly

Instant Download Access after purchase

Add to cart

Instant download

Also available in bundle (1)

ALL FedVTE Exams (20 Sets) Questions with Verified Answers 100% CORRECT

FedVTE Cyber Risk Management for Technicians Questions with Answers,Cyber security Analyst Quiz FedVTE 40 Questions with Verified Answers,FedVTE Windows Operating System Security 50 Questions with Ver...

By Nolan19 8 months ago



Reviews( 0 )


Add to cart

Instant download

Can't find what you want? Try our AI powered Search



Document information

Connected school, study & course

About the document

Uploaded On

Oct 10, 2023

Number of pages


Written in



Member since 2 years

10 Documents Sold

Additional information

This document has been written for:


Oct 10, 2023





Recommended For You

Get more on EXAM »
What is Browsegrades

In Browsegrades, a student can earn by offering help to other student. Students can help other students with materials by upploading their notes and earn money.

We are here to help

We're available through e-mail, Twitter, Facebook, and live chat.
 Questions? Leave a message!

Follow us on

Copyright © Browsegrades · High quality services·