ExamGecko
Home Home / ISC / CISSP

ISC CISSP Practice Test - Questions Answers, Page 149

Question list
Search
Search

Which of the fallowing statements is MOST accurate regarding information assets?

A.
International Organization for Standardization (ISO) 27001 compliance specifies which information assets must be included in asset inventory.
A.
International Organization for Standardization (ISO) 27001 compliance specifies which information assets must be included in asset inventory.
Answers
B.
S3 Information assets include any information that is valuable to the organization,
B.
S3 Information assets include any information that is valuable to the organization,
Answers
C.
Building an information assets register is a resource-intensive job.
C.
Building an information assets register is a resource-intensive job.
Answers
D.
Information assets inventory is not required for risk assessment.
D.
Information assets inventory is not required for risk assessment.
Answers
Suggested answer: B

An information security professional is reviewing user access controls on a customer-facing application. The application must have multi-factor authentication (MFA) in place. The application currently requires a username and password to login. Which of the following options would BEST implement MFA?

A.
Geolocate the user and compare to previous logins
A.
Geolocate the user and compare to previous logins
Answers
B.
Require a pre-selected number as part of the login
B.
Require a pre-selected number as part of the login
Answers
C.
Have the user answer a secret question that is known to them
C.
Have the user answer a secret question that is known to them
Answers
D.
Enter an automatically generated number from a hardware token
D.
Enter an automatically generated number from a hardware token
Answers
Suggested answer: C

Explanation:


Total 1.482 questions
Go to page: of 149