Free 512-50 Exam Braindumps (page: 24)

Page 23 of 102

The purpose of NIST SP 800-53 as part of the NIST System Certification and Accreditation Project is to establish a set of standardized, minimum security controls for IT systems addressing low, moderate, and high levels of concern for

  1. Confidentiality, Integrity and Availability
  2. Assurance, Compliance and Availability
  3. International Compliance
  4. Integrity and Availability

Answer(s): A



When deploying an Intrusion Prevention System (IPS) the BEST way to get maximum protection from the system is to deploy it

  1. In promiscuous mode and only detect malicious traffic.
  2. In-line and turn on blocking mode to stop malicious traffic.
  3. In promiscuous mode and block malicious traffic.
  4. In-line and turn on alert mode to stop malicious traffic.

Answer(s): B



What is the BEST way to achieve on-going compliance monitoring in an organization?

  1. Only check compliance right before the auditors are scheduled to arrive onsite.
  2. Outsource compliance to a 3rd party vendor and let them manage the program.
  3. Have Compliance and Information Security partner to correct issues as they arise.
  4. Have Compliance direct Information Security to fix issues after the auditors report.

Answer(s): C



Which of the following is the MOST important for a CISO to understand when identifying threats?

  1. How vulnerabilities can potentially be exploited in systems that impact the organization
  2. How the security operations team will behave to reported incidents
  3. How the firewall and other security devices are configured to prevent attacks
  4. How the incident management team prepares to handle an attack

Answer(s): A






Post your Comments and Discuss EC-Council 512-50 exam with other Community members:

512-50 Discussions & Posts