Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the APICS CPIM CPIM-8.0 Questions and answers with CertsForce

Viewing page 5 out of 13 pages
Viewing questions 61-75 out of questions
Questions # 61:

The development team wants new commercial software to Integrate into the current systems. What steps can the security office take to ensure the software has no vulnerabilities?

Options:

A.

Request a copy of the most recent System and Organization Controls (SOC) report and/or most recent security audit reports and any vulnerability scans of the software code from the vendor.


B.

Purchase the software, deploy it in a test environment, and perform Dynamic Application Security Testing (DAST) on the software.


C.

Request a software demo with permission to have a third-party penetration test completed on it.


D.

Ask the development team to reevaluate the current program and have a toolset developed securely within the organization.


Expert Solution
Questions # 62:

An organization has been the subject of increasingly sophisticated phishing campaigns in recent months and has detected unauthorized access attempts against its Virtual Private Network (VPN) concentrators. Which of the following implementations would have the GREATEST impact on reducing the risk of credential compromise?

Options:

A.

Increasing the network password complexity requirements


B.

Implementing tougher encryption on the VPN


C.

Implementing Multi-Factor Authentication (MFA)


D.

Implementing advanced endpoint protection on user endpoints


Expert Solution
Questions # 63:

Which of the following attributes describes a company with a global strategy?

Options:

A.

Ituses the same basic competitive style worldwide and focuses efforts on building global brands.


B.

Itcustomizes the basic competitive style to fit markets but focuses efforts on building global brands.


C.

Itcoordinates major strategic decisions worldwide but gives country managers wide strategy-making latitude.


D.

Itoperates plants in many host countries and uses decentralized distribution.


Expert Solution
Questions # 64:

A company is having trouble with raw material deliveries and has decided to develop a supplier certification program. The certification process most appropriately would start with which of the following suppliers?

Options:

A.

Suppliers of " A“ classified items


B.

Suppliers recently ISO 9000 certified


C.

Suppliers with the worst performance records


D.

Suppliers with vendor-managed inventory (VMI)


Expert Solution
Questions # 65:

Which assessing whether real-world threats to the security of an application have been mitigated, what is MOST effective source to confirm that sufficient security controls are in place for both end users and customers?

Options:

A.

Software security team


B.

Product management


C.

Third-party reviews


D.

Senior management


Expert Solution
Questions # 66:

Which of the following factors is the MOST important consideration for a security team when determining whether cryptographic erasure can be used for disposal of a device?

Options:

A.

If the data on the device exceeds what cryptographic erasure can safely process


B.

If the methods meet the International Organization for Standardization/International Electrotechnical Commission (ISO/IEC) 27001


C.

If security policies allow for cryptographic erasure based on the data stored on the device


D.

If the device was encrypted prior using cipher block chaining


Expert Solution
Questions # 67:

Which of the following is an information security management framework?

Options:

A.

Control Objectives For Information And Related Technologies (COBIT)


B.

Information Technology Infrastructure Library (ITIL)


C.

International Organization For Standardization (ISO) 27001


D.

Cloud Security Alliance (CSA) Cloud Controls Matrix (CCM)


Expert Solution
Questions # 68:

An organization wants to ensure the security of communications across its environment. What is the BEST way to provide confidentiality of data from handheld wireless devices to the internal network?

Options:

A.

Transmission encryption


B.

Multi-Factor Authentication (MFA)


C.

Single Sign-On (SSO)


D.

Transmission authentication


Expert Solution
Questions # 69:

In a hospital, during a routine inspection performed by the computerized tomography device technical service, it is discovered that the values of radiation used in scans are one order of magnitude higher than the default setting. If the system has had an unauthorized access, which one of the following concepts BEST describes which core principle has been compromised?

Options:

A.

Confidentiality


B.

Availability


C.

Cybersecurity


D.

Integrity


Expert Solution
Questions # 70:

An organization is migrating some of its applications to the cloud. The Chief Information Security Officer (CISO) is concerned about the accuracy of the reports showing which application should be migrated and how many applications reside on each server. As a result, the CISO is looking to establish asset management requirements. Which of these elements should be considered part of asset management requirements?

Options:

A.

Threat modelling and discovery


B.

Configuration Management (CM) database


C.

Risk management framework


D.

Integration testing program


Expert Solution
Questions # 71:

Return on investment (ROI) is decreased by which of the following activities?

Options:

A.

Increasing prices


B.

Increasing sales volume


C.

Increasing cost of sales


D.

Reducing inventory levels


Expert Solution
Questions # 72:

An organization’s computer incident responses team PRIMARY responds to which type of control?

Options:

A.

Administrative


B.

Detective


C.

Corrective


D.

presentative


Expert Solution
Questions # 73:

Which of the following items does the master scheduler have the authority to change in the master scheduling process?

Options:

A.

Product mix


B.

Aggregate volume


C.

Engineering change effectivity date


D.

Customer order quantities


Expert Solution
Questions # 74:

Which of the following data elements is required for a manufacturing routing?

Options:

A.

Queue time


B.

Work center


C.

Order quantity


D.

Efficiency factor


Expert Solution
Questions # 75:

To gain entry into a building, individuals are required to use a palm scan. This is an example of which type of control?

Options:

A.

Administrative detective


B.

Physical preventive


C.

Physical detective


D.

Administrative preventive


Expert Solution
Viewing page 5 out of 13 pages
Viewing questions 61-75 out of questions