click below
click below
Normal Size Small Size show me how
Chapter 1 Essentials
Security+ SY0-501 7th Edition Exam Essentials (Chapter 1)
| Question | Answer |
|---|---|
| Name the three categories of control types. | The three types of controls that can be administered are technical, management, and operational. |
| Know how to calculate risk. | Risk can be calculated either qualitatively (subjective) or quantitatively (objective). Quantitative calculations assign $ amounts, formula is SLE × ARO = ALE, SLE single loss expectancy, ARO annualized rate of occurrence, and ALE annual loss expectancy. |
| Be familiar with the four different approaches to risk. | The four risk response strategies are avoidance (don’t engage in that activity), transference (think insurance), mitigation (take steps to reduce the risk), and acceptance (be willing to live with the risk). |
| Know the importance of policies, standards, and guidelines. | Policies and guidelines set a standard of expectation in an organization. Standards tell people what is expected, and guidelines provide specific advice on how to accomplish a given task or activity. |
| Understand important elements of key levels of RAID. | RAID level 0 does not include any fault tolerance. RAID level 1 can be implemented as mirroring or duplexing; the difference is that the latter includes multiple controllers. RAID level 5 is known as disk striping with parity. |