Ask Operation Management Expert

1. Risk is defined as ---

2. What is the difference between cyber security risk and any other risk?

3. What is risk management?

4. The goal of any risk response is achieve a balance of ______________________vs___________________

5. A loss occurs with __________________

6. Explain a 4 by 5 probability and impact matrix

7. There are three pillars(key components) in Cyber security risk ; identify each pillar and define it

8. Define what a threat is and give one example

9. Which is not a component of risk management:

Identifying risks

Assessing risks

Eliminating risks

Prioritizing risks

10. Which is not an accurate statement

A. You can reduce the impact of a threat

B. You can reduce the potential for a threat to occur

C. Threats can be eliminated

D. Threats are always present

11. Define what vulnerability is and give one source of a vulnerability

12. Identify theft is not:

Deliberate use of someone else’s identity

Fraud

Electronically altering data

Used for financial gain

13. Which is not an example of an exploit mitigation

A. Version control

B. Strong patch management

C. Policies and procedures

D. Incident response

14. There are 4 risk response options, name them

15. What is residual risk?

6. Define risk appetite

17. Define PII

18. Which is NOT a purpose of employee risk training?

They can develop a mitigation

They know how to recognize a risk

They know how to respond to a possible risk

All are purposes of a risk training program.

19. Which is NOT PII?

Driver’s license number

Computer IP address

Social Security Number

Towson ID number

20. Which is not true about compliance?

A. Compliance means you must comply with applicable laws

B. You are expected to be aware of compliance regulations and their relevance

C. Ignorance of the laws is no excuse

D. A company can determine what they must comply with

21. We discussed multiple compliance regulations, FISMA, HIPPA, GLBA, SOX, FERPA

Which is used to protect medical information? HIPPA

Which is used to protect Student Information?

T/F GLBA is a subset of FISMA that TU must comply with.

Who is required to comply with FISMA?

22. Which is not true of the NIST Cyber security Risk Management framework (CRMF)

A. Cyber security is managed at multiple organizational levels

B. Security is integrated into the system development life cycle

C. Cyber security risks are identified on a quarterly basis

D. The First stage requires a system inventory to be developed

23. Risk mitigation starts with a strong asset inventory. Give 4 pieces of information would be required in an asset inventory besides the system’s name and acronym.

24. Which factor below is not considered when determining mission criticality of a system?

A. Vital or an organization

B. If system fails the company cannot perform essential functions

C. Monetary loss

D. Legal and compliance requirements

25. Calculate the FIPS 199 system categorization for a Payroll system

26. What is the acronym (or name) of the federal organization that writes all federal cyber security and Risk Management standards, guidelines, and special publications?

27. There are three types of information, Public, Proprietary and private, which one requires the most protection?

28. What is a security control? Why would you use one?

29. Where would you find the control for the policy and procedures for the Contingency Planning (CP)) family?

30. What control family would you use if you wanted to make sure only the people that needed the information could see it?

31. What is the purpose of a system security plan?

32. Why is continuous monitoring important?

Operation Management, Management Studies

  • Category:- Operation Management
  • Reference No.:- M93103626

Have any Question?


Related Questions in Operation Management

Conflictdefine functional versus dysfunctional conflict in

Conflict Define functional versus dysfunctional conflict in a work group and explain how you can increase functional conflict and decrease dysfunctional conflict. Develop a response that includes examples and evidence to ...

For this assignment you will need to find 2 articles in

For this assignment, you will need to find 2 articles in business that can help describe what are IT strategic initiative being undertaken by an organization are like. Choose a different organization for each of the arti ...

Coping with problems joe is a little nervous he has just

Coping With Problems Joe is a little nervous. He has just been transferred from another plant to take over a production line. Production is down and there is a serious problem with absenteeism. To make matters worse, the ...

Over 30 years ago michael porter identified a holistic

Over 30 years ago Michael Porter identified a holistic approach to understanding how competitive forces shape strategy. He posited that the only way to truly insulate an organization from underlying economic volatility i ...

You are the contracting officer for an air-to-ground

You are the contracting officer for an air-to-ground missile development program. A contract for pre-production models of the missile was awarded by your predecessor and the contractor is behind schedule. In a program me ...

The ikea case provides an excellent opportunity to apply

The IKEA case provides an excellent opportunity to apply strategic management concepts to a large privately-held company that is expanding into India. IKEA is a Netherlands-based Swedish company with a presence in 44 cou ...

Can you answer for me the following questions about social

Can you answer for me the following questions about social loafing and the three main causes of free-riding. 1. Give a description of the phenomenon of social loafing. 2. Give a description of the phenomenon of free-ridi ...

1 analyzing the bridgestonefirestone and ford motor company

1. Analyzing the Bridgestone/Firestone and Ford motor company, is it sufficient to use the ISO/QS 9000 standards as the main basis of vendor/product selection? 2. What position to these cars company ( 1. Volkswagen, 2. F ...

Research the effect of primary and secondary seat belt laws

Research the effect of primary and secondary seat belt laws on the occurrence of motor-vehicle injuries and fatalities. Explain how epidemiologic studies influenced the development of current seat belt laws. Describe how ...

Please provide a brief paragrap of the key takaways from

Please provide a brief paragrap of the key takaways from each of the following topics: Designing Clear Visuals in business reports Designing Successful Documents and Websites Writing Winning Proposals

  • 4,153,160 Questions Asked
  • 13,132 Experts
  • 2,558,936 Questions Answered

Ask Experts for help!!

Looking for Assignment Help?

Start excelling in your Courses, Get help with Assignment

Write us your full requirement for evaluation and you will receive response within 20 minutes turnaround time.

Ask Now Help with Problems, Get a Best Answer

Why might a bank avoid the use of interest rate swaps even

Why might a bank avoid the use of interest rate swaps, even when the institution is exposed to significant interest rate

Describe the difference between zero coupon bonds and

Describe the difference between zero coupon bonds and coupon bonds. Under what conditions will a coupon bond sell at a p

Compute the present value of an annuity of 880 per year

Compute the present value of an annuity of $ 880 per year for 16 years, given a discount rate of 6 percent per annum. As

Compute the present value of an 1150 payment made in ten

Compute the present value of an $1,150 payment made in ten years when the discount rate is 12 percent. (Do not round int

Compute the present value of an annuity of 699 per year

Compute the present value of an annuity of $ 699 per year for 19 years, given a discount rate of 6 percent per annum. As