Governance & Compliance第 100 / 100 题
Regular training that teaches employees to recognize phishing and follow security policies is called:
a.Penetration testing
b.Security awareness training
c.Change management
d.Vulnerability management
解析
Security awareness training educates users to recognize threats like phishing and to follow safe practices. Because people are a common attack vector, this reduces human-related risk. Ongoing and simulated exercises reinforce the behavior over time.
免费刷完整 100 道题库 — 无需注册。
同考点相关题目
- A calculation of expected yearly loss from a risk, found by multiplying single loss expectancy by annual rate of occurrence, is the:
- Which assessment identifies the critical processes and the impact of their disruption to guide continuity planning?
- Which agreement defines the measurable service levels a provider must meet, such as uptime guarantees?
- Which legal agreement prohibits parties from disclosing confidential information they receive?
- The residual risk that remains after all controls have been applied should be:
- Which framework provides a widely used structure for managing cybersecurity risk through functions like Identify, Protect, Detect, Respond, and Recover?