Homework 02
Objective: Answer each question
Questions
-
Explain the security implications of hiring a new employee.
-
Please give examples of risks on onboarding and offboarding employees?
-
What is the principle of least privilege?
-
What is employee oversight?
-
Why are mandatory vacations needed?
-
Explain UBA/UEBA.
-
Explain employee transfers.
-
What is a termination policy?
-
What is risk management?
-
What is risk analysis?
-
How would you evaluate threats?
-
Please explain the difference between qualitative risk analysis and quantitative risk analysis.
-
What is SLE and how would you calculate it?
-
What is ALE and how would you calculate it?
-
What is the formula for safeguard evaluation?
-
What are the options for handling risk?
-
What is an SCA?
-
Explain security monitoring and measurement.
-
What is a risk report?
-
What is RMM?
-
What is the security risk from legacy systems?
-
What is social engineering and can you give three examples?
-
How would you implement security awareness training and education?
-
Why do we need periodic content reviews and effectiveness for security training?