Deck 11: Defense in Depth, Software Development, and Data Analytics

Full screen (f)
exit full mode
Question
A layer of protection called ______________ (from Greek words meaning "hidden writing") is the practice of transforming information so it is secure and cannot be accessed by unauthorized parties.
Use Space or
up arrow
down arrow
to flip the card.
Question
What aspect of job rotation requires teaching employees to perform multiple job functions besides the ones for which they were hired?
Question
Which of the following security protections afforded by cryptography ensures that only authorized parties can view information?

A) Integrity
B) Confidentiality
C) Authentication
D) Non-repudiation
Question
The costs associated with providing cybersecurity protections have plateaued and will probably remain constant over the next few years.
Question
In which of the following cloud services does the customer has the highest level of control?

A) Software as a service (SaaS)
B) Platform as a service (PaaS)
C) Infrastructure as a service (IaaS)
D) Virtualization as a service (VaaS)
Question
What is another name for dynamic code analysis?
Question
In the context of cybersecurity, what is fuzzing?
Question
What element of quality assurance helps to ensure that resolved prior vulnerabilities continue to stay secure and that changes to the code do not inadvertently create new flaws that can break the application or cause unwanted results?
Question
Which of the following SDLC best practices determines if software can withstand the workload placed on it without crashing and includes verification that the software can respond in a timely fashion to a high number of simultaneous users?

A) Security requirements definition
B) User acceptance testing
C) Input validation
D) Application stress testing
Question
To ensure an efficient process, software testing should only be performed after coding is completed.
Unlock Deck
Sign up to unlock the cards in this deck!
Unlock Deck
Unlock Deck
1/10
auto play flashcards
Play
simple tutorial
Full screen (f)
exit full mode
Deck 11: Defense in Depth, Software Development, and Data Analytics
1
A layer of protection called ______________ (from Greek words meaning "hidden writing") is the practice of transforming information so it is secure and cannot be accessed by unauthorized parties.
Cryptography
2
What aspect of job rotation requires teaching employees to perform multiple job functions besides the ones for which they were hired?
Cross training
3
Which of the following security protections afforded by cryptography ensures that only authorized parties can view information?

A) Integrity
B) Confidentiality
C) Authentication
D) Non-repudiation
B
4
The costs associated with providing cybersecurity protections have plateaued and will probably remain constant over the next few years.
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
5
In which of the following cloud services does the customer has the highest level of control?

A) Software as a service (SaaS)
B) Platform as a service (PaaS)
C) Infrastructure as a service (IaaS)
D) Virtualization as a service (VaaS)
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
6
What is another name for dynamic code analysis?
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
7
In the context of cybersecurity, what is fuzzing?
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
8
What element of quality assurance helps to ensure that resolved prior vulnerabilities continue to stay secure and that changes to the code do not inadvertently create new flaws that can break the application or cause unwanted results?
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
9
Which of the following SDLC best practices determines if software can withstand the workload placed on it without crashing and includes verification that the software can respond in a timely fashion to a high number of simultaneous users?

A) Security requirements definition
B) User acceptance testing
C) Input validation
D) Application stress testing
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
10
To ensure an efficient process, software testing should only be performed after coding is completed.
Unlock Deck
Unlock for access to all 10 flashcards in this deck.
Unlock Deck
k this deck
locked card icon
Unlock Deck
Unlock for access to all 10 flashcards in this deck.