CEH Cryptography 2 — Questions and Answers
Question 1: Which metric best measures Cryptography effectiveness?
- Domain-specific KPIs aligned with defined objectives (Correct answer)
- Number of meetings held about the topic
- Amount of documentation produced
- Budget spent on related tools
Correct answer: Domain-specific KPIs aligned with defined objectives
Effectiveness of Cryptography is best measured through KPIs that align with defined objectives.
Question 2: How does Cryptography handle change management?
- Through controlled processes that assess impact before changes (Correct answer)
- Changes are not allowed once implemented
- All changes happen immediately without review
- Change management is handled separately
Correct answer: Through controlled processes that assess impact before changes
Changes to Cryptography should follow controlled processes with proper impact assessment.
Question 3: What documentation is essential for Cryptography?
- Policies, procedures, guidelines, and records of decisions (Correct answer)
- No documentation is needed
- Only a one-page summary document
- Only informal email notes
Correct answer: Policies, procedures, guidelines, and records of decisions
Essential Cryptography documentation includes policies, procedures, guidelines, and decision records.
Question 4: How does Cryptography contribute to continuous improvement?
- Through regular assessment, feedback loops, and iterative enhancement (Correct answer)
- By maintaining the status quo indefinitely
- By preventing any changes to existing processes
- Through one-time implementation only
Correct answer: Through regular assessment, feedback loops, and iterative enhancement
Continuous improvement in Cryptography comes from regular assessment and iterative enhancement cycles.
Question 5: What is the relationship between Cryptography and security?
- Cryptography includes security considerations as an integral component (Correct answer)
- Security is completely unrelated to this topic
- Cryptography replaces all other security measures
- Security only applies to network-related topics
Correct answer: Cryptography includes security considerations as an integral component
Security is an integral part of Cryptography, ensuring that implementations are protected and compliant.
Question 6: How should Cryptography be prioritized against competing organizational needs?
- Based on risk assessment and business impact analysis (Correct answer)
- Always given highest priority over everything else
- Always given lowest priority
- Prioritized randomly without analysis
Correct answer: Based on risk assessment and business impact analysis
Prioritization of Cryptography should be based on risk assessment and business impact.
Which metric best measures Cryptography effectiveness?