CISSP PRACTICE QUESTIONS – 20201213

Effective CISSP Questions

Which of the following is the best role responsible for ensuring compliance in an organization with laws and regulations, industrial standards, contractual requirements, organizational policies, and code of ethics through independent assessments?
A. Senior management
B. The board of director
C. First-tier customers
D. Audit committee

Continue reading

CISSP PRACTICE QUESTIONS – 20201211

Effective CISSP Questions

After taking inventory, each asset shall be assigned an owner responsible for asset classification and held accountable for protecting the asset. Which of the following is the best candidate to assume the ownership in terms of accountability?
A. Senior management as a whole
B. A committee at the board level
C. An individual member of the management
D. A group of senior business people

Continue reading

Exceptions to the Civil Liability in Section 230

47 USC 230: Protection for private blocking and screening of offensive material

Title 47 – TELECOMMUNICATIONS
CHAPTER 5 – WIRE OR RADIO COMMUNICATION
SUBCHAPTER II – COMMON CARRIERS
Part I – Common Carrier Regulation
Section 230 – Protection for private blocking and screening of offensive material

(c) Protection for “Good Samaritan” blocking and screening of offensive material
(1) Treatment of publisher or speaker
No provider or user of an interactive computer service shall be treated as the publisher or speaker of any information provided by another information content provider.
(2) Civil liability
No provider or user of an interactive computer service shall be held liable on account of-
(A) any action voluntarily taken in good faith to restrict access to or availability of material that the provider or user considers to be obscene, lewd, lascivious, filthy, excessively violent, harassing, or otherwise objectionable, whether or not such material is constitutionally protected; or
(B) any action taken to enable or make available to information content providers or others the technical means to restrict access to material described in paragraph (1).

Source: https://uscode.house.gov

Continue reading

CISSP PRACTICE QUESTIONS – 20201210

Effective CISSP Questions

As a CISO, you shall align the security function to business strategy, goals, mission, and objectives. Which of the following is the best description of the security function?
A. The position and organization of information security
B. The assurance of independent security audits
C. The implementation of information security programs
D. The capability provided by the system or a system element

Continue reading