ISC CISSP Practice Test - Questions Answers, Page 149
List of questions
Related questions
Which of the fallowing statements is MOST accurate regarding information assets?
A.
International Organization for Standardization (ISO) 27001 compliance specifies which information assets must be included in asset inventory.
B.
S3 Information assets include any information that is valuable to the organization,
C.
Building an information assets register is a resource-intensive job.
D.
Information assets inventory is not required for risk assessment.
An information security professional is reviewing user access controls on a customer-facing application. The application must have multi-factor authentication (MFA) in place. The application currently requires a username and password to login. Which of the following options would BEST implement MFA?
A.
Geolocate the user and compare to previous logins
B.
Require a pre-selected number as part of the login
C.
Have the user answer a secret question that is known to them
D.
Enter an automatically generated number from a hardware token
Question