4 Basics of IT Governance

0.0(0)
studied byStudied by 0 people
0.0(0)
full-widthCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/29

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

30 Terms

1
New cards

Which of the following are stand‐alone PII data elements, also known as SPII?

Fingerprints, driver's license number, and street address

2
New cards

Which of these manages documents, records, and data in electronic format for an organization?

EDRMS

3
New cards

Which information security concept addresses where and how your data is stored?

physical security

4
New cards


Why are you required to stand far back from the pharmacy counter when you are waiting to talk to a customer service person about refilling a prescription?

It is PHI data and is required by HIPAA.

5
New cards


no bookmarked, confident, or note marked bookmark popover collapsed

Question 5 :

A data warehouse is used _______________.

to bring various data sources together for the purpose of analysis and decision-making

6
New cards


Which of the following is not an advantage of using a PaaS?

Reduced control

7
New cards

According to CompTIA exam objectives, writing code and making changes to code involve all of the following environments, except for which one?

Infrastrucutre

8
New cards

Your project will require changes to the organization’s servers along with firmware and software updates. What type of change is this?

Each correct answer represents a complete solution. Choose two.

Operational & Infrastructure

9
New cards

Passport numbers, driver’s license numbers, and credit card numbers are types of which data?

SPII

10
New cards

A company is considering opening a store in a new country in which it has never done business before. This new country has laws called the consumer bill of rights that outline a company's responsibility to collect private data as well as a consumer's ability to see and/or restrict the collection of this data. Which ESG factor would influence this project's activities?

Awareness of appliable regulations and standards

11
New cards

Your organization is part of a network of researchers who need to share data and experimental results. Which cloud deployment model is the best solution for this scenario?

Community cloud

12
New cards


Your organization has recently discovered that PII data has been exposed. What is this known as?

Breach of confidentiality

13
New cards


Your organization is involved in the research and development of botanical cleaning products. Your recent product has just received approval to display the ® (registered) symbol. All potential employees must undergo a background check before being hired and again yearly on the anniversary of their hire date. One of the laboratories contains top‐secret research and only certain employees have access to this lab. One of the employees on the project team has just been promoted and will be leaving the team to join their new functional area. This team member previously had access to the top‐secret lab, but their new role no longer requires this access. Which of the following is not true regarding this question?

The new product has not been registered at the U.S. Patent and Trademark office.

14
New cards


Removable media is a security risk for all organizations. You are working with IT to create a policy that includes encryption procedures for removable media. Which of the following policies are the procedures for removable media contained in?

Physical 

15
New cards


no bookmarked, confident, or note marked bookmark popover collapsed

Question 15 :

Suppose that you work for a company that has several campuses located in different locations in the city. Which network will connect them together?

WAN

16
New cards

All of the following are the most common elements in a three‐tier, multitiered architecture, except for which one?

Networking layer

17
New cards


no bookmarked, confident, or note marked bookmark popover collapsed

Question 17 :

In which cloud service model does the cloud service provider have the most control?

SaaS

18
New cards

ESG factors may have a significant influence on your project and your project may also have an influence on the ESG factors. What are some of the lesser-known ESG factors?

Each correct answer represents a complete solution. Choose all that apply.

Project impact on company brand value

Project impact on the local and global environment

Awareness of applicable regulations and standards

19
New cards

A new U.S. state law gives customers the ability to request what data a company is storing about their users and how the company is using this information. A global company has to adjust its product design to conform to this requirement. Which ESG factor can cause the project to change in this manner?

Awareness of applicable regulations and standards

20
New cards

Suppose that you work for a company that has gone through a rapid growth cycle and now has several one‐off systems for activities like the company's finances, manufacturing, and human resources. The leaders of the company want to have a system that brings these activities together. What kind of system will you recommend?

ERP

21
New cards

You work for a company that is growing rapidly. The company's leadership wants to install a system that will allow both current and future customers to interact with the company to learn more about the company's products and to obtain support. What kind of a system will you recommend be implemented?

CRM

22
New cards

Who is responsible for documenting the various systems, applications, databases, and other computing infrastructure the company owns?

Information technology

23
New cards

David is working on a project that will be incorporating three-tier, multitiered architecture. What are the three tiers in this type of architecture?

Data tier

Processing tier

Presentation tier

24
New cards

Which of the following data sources is not considered SPII?

first name

25
New cards

Which of the following is the focus of HIPAA specifically?

Protecting and safekeeping ePHI

26
New cards

Any information about an individual maintained by an agency that can be used to distinguish or trace an individual's identity is known as what? And what U.S. organization created this definition?

Each correct answer represents a complete solution. Choose two.

Personally identifiable information (PII)

National Institute of Standards and Technology (NIST)

27
New cards

Which of the following are types of cloud deployments?

Each correct answer represents a complete solution. Choose two.

Private cloud

Hybrid Cloud

28
New cards


In a multitiered architecture, which tier is where information is stored, sorted, and indexed?

Data

29
New cards

In the multitenant model of cloud computing, providers that offer their services to a variety of customers can utilize which of the following?

Resource pooling

30
New cards

A change manager supports a large transportation agency. In support of an upcoming project change, she has established emails to be sent two weeks in advance, a week in advance, and the day of the changes so that users can expect an outage and a new layout when the service comes back online. What is she working on?

Notifications