A well-executed risk analysis provides a great deal of useful information. A risk analysis has four main objectives.
What is not one of the four main objectives of a risk analysis?
Who is responsible for Initial asset allocation to the user/custodian of the assets?
What is social engineering?
Which of the following is a technical security measure?
Implement plan on a test basis - this comes under which section of PDCA
Who are allowed to access highly confidential files?
What is a repressive measure in case of a fire?
Changes to the information processing facilities shall be done in controlled manner.
What type of compliancy standard, regulation or legislation provides a code of practice for information security?
Someone from a large tech company calls you on behalf of your company to check the health of your PC, and therefore needs your user-id and password. What type of threat is this?