Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

1. What is the name of data that is stored in memory? volatile persistent static

ID: 3868003 • Letter: 1

Question

1. What is the name of data that is stored in memory?

volatile

persistent

static

forensically sound

2.

What type of risk assessment uses monetary values to assess a risk?

ongoing

quantitative

probability-based

qualitative

3.

Why is continuous monitoring an important activity in risk management?

It automatically responds to threats and vulnerabilities.

It helps define long-term business strategy.

It helps define the financial goals for long-term viability.

It enables an organization to update policies and controls that aren’t effective.

4.

______________________ created a comprehensive standard to help any organization create an information security governance program.

The Federal Trade Commission

The Government Accountability Office (GOA)

The International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC)

National Institute of Standards and Technology (NIST)

5.

Which of the following is not a primary analysis area of computer forensics?

media analysis

code analysis

network analysis

log analysis

volatile

persistent

static

forensically sound

2.

What type of risk assessment uses monetary values to assess a risk?

ongoing

quantitative

probability-based

qualitative

3.

Why is continuous monitoring an important activity in risk management?

It automatically responds to threats and vulnerabilities.

It helps define long-term business strategy.

It helps define the financial goals for long-term viability.

It enables an organization to update policies and controls that aren’t effective.

4.

______________________ created a comprehensive standard to help any organization create an information security governance program.

The Federal Trade Commission

The Government Accountability Office (GOA)

The International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC)

National Institute of Standards and Technology (NIST)

5.

Which of the following is not a primary analysis area of computer forensics?

media analysis

code analysis

network analysis

log analysis

Explanation / Answer

1) The data which is stored in memory is persistent data.

2) Quantitative risk assessment uses monetary values to assess a risk.

3) Continuous monitoring enables an organization to update policies and controls that aren't effective as with continuous monitoring gives ongoing updates.

4) The International Organization for Standardization (ISO) and the International Electro technical Commission created a comprehensive standard to help any organization create an information security governance program.

5) Media analysis is not a primary analysis area of computer forensics.