Deck 11: Defense in Depth, Software Development, and Data Analytics
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Unlock Deck
Sign up to unlock the cards in this deck!
Unlock Deck
Unlock Deck
1/10
Play
Full screen (f)
Deck 11: Defense in Depth, Software Development, and Data Analytics
1
A layer of protection called ______________ (from Greek words meaning "hidden writing") is the practice of transforming information so it is secure and cannot be accessed by unauthorized parties.
Cryptography
2
What aspect of job rotation requires teaching employees to perform multiple job functions besides the ones for which they were hired?
Cross training
3
Which of the following security protections afforded by cryptography ensures that only authorized parties can view information?
A) Integrity
B) Confidentiality
C) Authentication
D) Non-repudiation
A) Integrity
B) Confidentiality
C) Authentication
D) Non-repudiation
B
4
The costs associated with providing cybersecurity protections have plateaued and will probably remain constant over the next few years.
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
5
In which of the following cloud services does the customer has the highest level of control?
A) Software as a service (SaaS)
B) Platform as a service (PaaS)
C) Infrastructure as a service (IaaS)
D) Virtualization as a service (VaaS)
A) Software as a service (SaaS)
B) Platform as a service (PaaS)
C) Infrastructure as a service (IaaS)
D) Virtualization as a service (VaaS)
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
6
What is another name for dynamic code analysis?
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
7
In the context of cybersecurity, what is fuzzing?
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
8
What element of quality assurance helps to ensure that resolved prior vulnerabilities continue to stay secure and that changes to the code do not inadvertently create new flaws that can break the application or cause unwanted results?
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
9
Which of the following SDLC best practices determines if software can withstand the workload placed on it without crashing and includes verification that the software can respond in a timely fashion to a high number of simultaneous users?
A) Security requirements definition
B) User acceptance testing
C) Input validation
D) Application stress testing
A) Security requirements definition
B) User acceptance testing
C) Input validation
D) Application stress testing
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
10
To ensure an efficient process, software testing should only be performed after coding is completed.
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck