โ† All CCISO Flashcard Decks

Core IT Security Flashcards

7 cards from real CCISO practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Core IT Security flashcards as text
  1. Which security concept requires that systems and processes be designed so that a failure defaults to a secure state rather than an insecure one?

    Answer: Fail secure (fail closed)

    Fail secure means that when a system fails, access is denied by default, preventing unauthorized access during system failures.

  2. A CISO discovers that an employee has been exfiltrating sensitive data using steganography embedded in image files. Which security tool would be MOST effective at detecting this activity?

    Answer: Data Loss Prevention (DLP)

    DLP solutions monitor and control data transfers, inspecting content leaving the organization to detect unauthorized exfiltration regardless of obfuscation method.

  3. Under the NIST Cybersecurity Framework, which core function involves developing and implementing activities to identify a cybersecurity incident?

    Answer: Detect

    The Detect function in the NIST CSF focuses on developing and implementing appropriate activities to identify the occurrence of a cybersecurity event.

  4. An attacker intercepts communication between two parties and secretly relays modified messages between them. Which attack type is this?

    Answer: Man-in-the-middle (MITM) attack

    A MITM attack positions the attacker between two communicating parties to intercept, read, and potentially modify messages in transit.

  5. A security team implements a honeypot on the network. What is the PRIMARY purpose of this deception technology?

    Answer: Detecting and studying attacker behavior

    Honeypots are decoy systems designed to attract attackers, allowing security teams to study their tactics and gather threat intelligence.

  6. Which regulatory framework requires organizations that process payment card data to implement specific security controls and undergo regular compliance assessments?

    Answer: PCI DSS

    PCI DSS (Payment Card Industry Data Security Standard) mandates security controls for any organization that stores, processes, or transmits cardholder data.

  7. A CISO is implementing a security awareness training program. Which metric best measures the program's effectiveness at reducing human risk?

    Answer: Reduction in phishing simulation click rates over time

    Tracking phishing simulation click rates over time measures actual behavioral change, which is the ultimate goal of security awareness training.