Filters
Question type

Study Flashcards

Windows allows the system user to enable auditing in _______ different categories.


A) five
B) seven
C) nine
D) eleven

E) All of the above
F) A) and D)

Correct Answer

verifed

verified

Although important, security auditing is not a key element in computersecurity.

A) True
B) False

Correct Answer

verifed

verified

The foundation of a security auditing facility is the initial capture ofthe audit data.

A) True
B) False

Correct Answer

verifed

verified

A _______ is conducted to determine the adequacy of system controls, ensure compliance with established security policy and procedures, detect breaches in security services, and recommend any changes that are indicated for countermeasures.


A) security audit trail
B) security audit
C) user-level audit
D) system-level audit trail

E) All of the above
F) A) and C)

Correct Answer

verifed

verified

Severe messages, such as immediate system shutdown, is a(n) _____ severity.


A) alert
B) emerg
C) crit
D) warning

E) All of the above
F) A) and C)

Correct Answer

verifed

verified

The basic audit objective is to establish accountability for systementities that initiate or participate in security-relevant events and actions.

A) True
B) False

Correct Answer

verifed

verified

True

_________ is a form of auditing that focuses on the security of an organization's IT assets.

Correct Answer

verifed

verified

The ________ is a module on a centralized system that collects audit trail records from other systems and creates a combined audit trail.


A) audit dispatcher
B) audit analyzer
C) audit trail collector
D) audit provider

E) All of the above
F) A) and B)

Correct Answer

verifed

verified

A _______ is an independent review and examination of a system's records and activities.

Correct Answer

verifed

verified

security audit

Applications, especially applications with a certain level of privilege,present security problems that may not be captured by system-level or user-level auditing data.

A) True
B) False

Correct Answer

verifed

verified

______ software is a centralized logging software package similar to, but much more complex than, syslog.


A) NetScan
B) McAfee
C) IPConfig
D) SIEM

E) A) and B)
F) A) and C)

Correct Answer

verifed

verified

Audit trails are different from audit logs.

A) True
B) False

Correct Answer

verifed

verified

Data items to capture for a security audit trail include:


A) events related to the security mechanisms on the system
B) operating system access
C) remote access
D) all of the above

E) B) and D)
F) None of the above

Correct Answer

verifed

verified

Windows is equipped with three types of event logs: system event log, security event log, and ________ event log.

Correct Answer

verifed

verified

application

_________ audit trails are generally used to monitor and optimize system performance.


A) User-level
B) Physical-level
C) System-level
D) All of the above

E) C) and D)
F) B) and D)

Correct Answer

verifed

verified

All UNIX implementations will have the same variants of the syslogfacility.

A) True
B) False

Correct Answer

verifed

verified

The ________ is an application or user who examines the audit trail and the audit archives for historical trends, for computer forensic purposes, and for other analysis.

Correct Answer

verifed

verified

audit trai...

View Answer

Monitoring areas suggested in ISO 27002 include: authorized access, all privileged operations, unauthorized access attempts, changes to (or attempts to change) system security settings and controls, and __________.

Correct Answer

verifed

verified

system ale...

View Answer

________ audit trail traces the activity of individual users over time and can be used to hold a user accountable for his or her actions.

Correct Answer

verifed

verified

The ________ is a module that transmits the audit trail records from its local system to the centralized audit trail collector.


A) audit dispatcher
B) audit analyzer
C) audit trail collector
D) none of the above

E) B) and D)
F) All of the above

Correct Answer

verifed

verified

Showing 1 - 20 of 45

Related Exams

Show Answer