首页
外语
计算机
考研
公务员
职业资格
财经
工程
司法
医学
专升本
自考
实用职业技能
登录
计算机
The following scenario will be used for questions 26, 27, and 28. Trent is the new manager of his company’s internal software de
The following scenario will be used for questions 26, 27, and 28. Trent is the new manager of his company’s internal software de
admin
2013-12-19
86
问题
The following scenario will be used for questions 26, 27, and 28.
Trent is the new manager of his company’s internal software development department. He has been told by his management that the group needs to be compliant with the international standard that provides guidance to organizations in integrating security into the processes used for managing their applications. His new boss told him that he should join and get familiar with the Web Application Security Consortium, and Trent just received an e-mail stating that one of the company’s currently deployed applications has a zero day vulnerability.
Which of the following is most likely the standard Trent’s company wants to comply with?
选项
A、ISO/IEC 27005
B、ISO/IEC 27001
C、ISO/IEC 27034
D、BS 7799
答案
C
解析
C正确。ISO/IEC 27034是一个国际标准,它为组织将安全性整合到用于管理应用程序的流程提供了指南。它适用于内部开发的应用程序、从第三方获得的应用程序以及应用程序的开发和运算是外包的情况。
A不正确。因为ISO/IEC 27005:2001为信息安全风险管理提供了指导方针。ISO/IEC 27005:2001支持ISO/IEC 27001,并且它的设计是为了帮助基于风险管理方法的信息安全的正确实现。
B不正确。因为ISO/IEC 27001:2005详细说明了在组织的整体业务风险的情况中,建立、实现、运行、监控、审查、维护和提高文档化的信息安全管理系统的需求。它还详细说明了依单个组织或单个组织的部分部门而定制的安全控制实现的需求。
D不正确。因为BS 7799是由英国政府的贸易与工业部所撰写的,它概述了信息安全管理体系(Information Security Management,ISMS,又叫安全项目)应该如何构建和维护。它的目的是为组织提供如何设计、实现和维护政策、过程和技术,以管理其敏感信息资产的风险提供指导方针。
转载请注明原文地址:https://kaotiyun.com/show/lNhZ777K
0
CISSP认证
相关试题推荐
Salt,shellsormetalsarestillusedasmoneyinout-the-waypartsoftheworldtoday.Saltmayseemratherastrange【C1】__
Themassmediaisabigpartofourculture,yetitcanalsobeahelper,adviserandteachertoouryounggeneration.Themass
Inthe1930s,anAmericanmeatcompanycameoutwithaspicedhamproductsoldinacan.Beforelong,Spam,asitwascalled,be
Themoreparentstalktotheirchildren,thefasterthosechildren’svocabulariesgrowandthebettertheirintelligencedevelop
Ofallthegoodsandservicestradedinthemarketeconomy,pharmaceuticalsareperhapsthemostcontentious.Thoughproducedby
Writeanessayof160-200wordsbasedonthefollowingdrawings.Inyouressay,youshould1)describethedrawingsbriefly,
Writealettertothemanagerofthehotelinwhichyouhavestayed,makingacomplaintaboutitsserviceduringyourstay.Y
Writeanessayof160-200wordsbasedonthefollowingdrawing.Inyouressay,youshould1)describethedrawingbriefly,
Ifsoldieringwasforthemoney,theSpecialAirService(SAS)andtheSpecialBoatService(SBS)wouldhavedisintegratedinre
Howmenfirstlearnedtoinventwordsisunknown;inotherwords,theoriginoflanguageisamystery.Allwereallyknowistha
随机试题
钢筋}昆凝土板桩围堰适用于()河床。
前牙反颌矫治后是否复发,主要与
本病例当辨何证本病例的代表方为
肝在志为
1990年盖洛普民意调查表明:美国人民心目中最诚实和最道德的职业排序,在第一位的是
皮亚杰认为人的认知阶段发展可以分为感知运动、前运算、具体运算、_________运算等阶段。
88×87-89×86=?
现象与本质的对立主要表现在()。
在西方资本主义国家中,影响最大的两部法典是《法国民法典》和()。
非空的循环单链表head的尾结点P满足(45)。
最新回复
(
0
)