CAP Authentication of the Professional Practice Examination Set 13

When you are ready to carry quantitative risk analysis of the project team a number of subject matter experts. Rack up the necessary inputs, including the cost of the project management plan. Why is it necessary cost management planning project, including what content in quantitative risk analysis process?


Options are :

  • Project cost management plan can help you determine what the total cost of the project must be included.
  • The project cost management plan is Nonet a quantitative risk analysis process input.
  • None
  • Project cost management plan including how the cost may be due to the identified risks and change direction.
  • The cost of the project management plan provides control, which can help determine the quantitative analysis of the budget.

Answer : The cost of the project management plan provides control, which can help determine the quantitative analysis of the budget.

Billy HAR is the project manager and the project six months. The project is expected to last 18 months. Management will ask Billy how the project team is often involved in the risk of re-evaluation in this project. I should tell Billy management, if he in accordance with the best practices of risk management?


Options are :

  • And project risk management in project design is completed.
  • Each project team status meetings, project risk management on the agenda.
  • Project Risk Management monthin designed for the 18-month project.
  • None
  • Project Risk Management are each milestone.

Answer : Each project team status meetings, project risk management on the agenda.

CAP Certified Authorization Professional Practice Exam Set 11

FITSAF behalf of the Federal Information TechNonelogy Security Evaluation Model. This is the Safety Assessment of information systems. Which of the following FITSAF level indicates, procedures and controls have been tested and reviewed?


Options are :

  • Level 1
  • Level 3
  • level 4
  • level 2
  • Level 3

Answer : level 2

What NIACAP varmentamistasot recommended by the certification? Each correct answer presents a complete solution. Check all that apply.


Options are :

  • Detailed analysis
  • Basic System Review
  • The maximum analysis
  • At least analysis
  • Comprehensive analysis
  • Basic Security Review

Answer : Detailed analysis At least analysis Comprehensive analysis Basic Security Review

Which of the following access control model using a predefined set of access rights to the target system?


Options are :

  • None
  • Discretionary Access Control
  • Mandatory Access Control
  • Access control policy
  • Role-based access control

Answer : Mandatory Access Control

CAP Certified Authorization Professional Practice Exam Set 2

The only way out qualitative risk analysis is updated risk register. When the project manager updates the risk list, he needs to include a number of records, including all of the following, in addition to which one?


Options are :

  • Risk probability matrix effect
  • Risk monitoring list is a low priority
  • Trends in qualitative risk analysis
  • Divided into different categories of risk
  • None

Answer : Risk probability matrix effect

Project Manager GHY project your organization to you. You are in the process of this project, begun qualitative risk analysis, you need to define the role of the implementation of risk management andresponsibilities. Where can I find this information?


Options are :

  • None
  • Risk Management Plan
  • The staffing management plan
  • envirnmental factor
  • Risk register

Answer : Risk Management Plan

The following steps DIACAP residual risk analysis?


Options are :

  • Step 5
  • the fourth step
  • Step 2
  • Step 3
  • None

Answer : the fourth step

CAP Certified Authorization Professional Practice Exam Set 10

What project management plan is most likely analysis matrix of environmental control project in quantitative risk?


Options are :

  • None
  • Human Resources Management Plan
  • Risk Management Plan
  • The staffing management plan
  • Risk Analysis Program

Answer : Risk Management Plan

The project team has identified risk, the project has responded. Risk is recorded in the risk register and project team discussed the risk response therisk events. The transaction is unlikely to occur for several months, but the probability is very high. Which of the following is an effective response to a certain risk events?


Options are :

  • Audit Risk
  • Corrective Action
  • Earned Value Management
  • Technical performance measurement
  • None

Answer : Corrective Action

The following phase between the SSAA and system DITSCAP C & original version of the formal approval of the contract A, what happens?


Options are :

  • Step 3
  • Stage 1
  • None
  • Step 2
  • the fourth step

Answer : Step 2

CAP Certified Authorization Professional Practice Exam Set 10

Who is responsible for high-profile, high-risk project is expected to manage the interests of the parties?


Options are :

  • project Manager
  • Project Management Office
  • The project risk assessment officer
  • The project sponsor
  • None

Answer : project Manager

Focus on the following aspects of its management is to establish and maintain system performance or product and its functional and physical characteristics and its requirements, consistency throughout the life cycle of the design and operation of information?


Options are :

  • Purchasing Management
  • Configuration Management
  • Risk Management
  • None
  • Change Management

Answer : Configuration Management

Security management is the protection of information assets security check process determined. What is the information security management responsibilities? Each correct answer presents a complete solution. Check all that apply.


Options are :

  • Assessment of business objectives, safety, productivity and efficiency requirements of the design. SETTINGS
  • By defining the objectives, scope, policies, priorities, standards and policies
  • Defined measures to ensure that all the responsibility to identify and properly handle version
  • In order to determine the true target, it is expected to achieve from the safety program

Answer : Assessment of business objectives, safety, productivity and efficiency requirements of the design. SETTINGS By defining the objectives, scope, policies, priorities, standards and policies Defined measures to ensure that all the responsibility to identify and properly handle version In order to determine the true target, it is expected to achieve from the safety program

Which of the following is a standard assessment of the validity of the basic requirements of a computer built into a computer system security controls set up for it?


Options are :

  • FIPS
  • TCSEC
  • FITSAF
  • None
  • SSAA

Answer : TCSEC

CAP Authentication of the Professional Practice Examination Set 6

Nancy NHH is the project manager of the project. He and the team has identified the qualitative risk analysis during the project a significant risk. Bob familiar with the techNonelogy risk, impact, and suggested that Nancy settlement risk events. Nancy tells Bob that he has taken Nonete of his answer, but go quantitativerisk process analysis of risk before the answer really need to create. Bob does Nonet agree with Nancy, and his answer is to ensure that the most appropriate risk identification. Who is right, this situation?


Options are :

  • Nancy was right. Because Nancy is a project manager, he can determine the risk analysis and countermeasures, the correct procedure. In addition, he has found the answer, risk, Bob recommendations.
  • Nancy was right. Quantitative risk analysis process to deal with risk measures the probability and impact should be significant before all produced by.
  • Bob is right. Bob is familiar with the techNonelogy and the risk of accidents so his response should be.
  • None
  • Bob is right. Quantitative risk analysis process that Nonet all risk events must respond by developing effective risk measures

Answer : Bob is right. Quantitative risk analysis process that Nonet all risk events must respond by developing effective risk measures

Which of the following components to ensure that the risk of a new check all the amendments proposed for the change control system requirements?


Options are :

  • Configuration Management
  • None
  • Risk Monitoring and Control
  • Integrated management changes
  • Scope change management

Answer : Integrated management changes

What are the safety certification document mission's goal is? Each correct answer presents a complete solution. Check all that apply.


Options are :

  • To prepare a plan of action based on security assessments and milestones (POAM)
  • To assemble its final approval of security, and then give it to the officer
  • To upgrade the security system solutions based on the results of the safety evaluation
  • In order to provide the information system owner's certification findings and recommendations

Answer : To prepare a plan of action based on security assessments and milestones (POAM) To assemble its final approval of security, and then give it to the officer To upgrade the security system solutions based on the results of the safety evaluation In order to provide the information system owner's certification findings and recommendations

CAP Certified Authorization Professional Practice Exam Set 6

This is the role of professional display, participate in the organization of the configuration management process?


Options are :

  • None
  • Chief Information Officer
  • Joint Monitoring supplier
  • Senior agency information security officer
  • official

Answer : Joint Monitoring supplier

Which of the following system access control list (SACL) is true?


Options are :

  • This is to reduce the demand for globally unique IP addresses mechanisms.
  • It contains the users and groups, and they have a list of what rights.
  • It is there for each permission item is assigned to an object.
  • It includes objects may be set to check for list of events.
  • None

Answer : It includes objects may be set to check for list of events.

You already delayed project work, which has a negative impact on the work progress of the project as a project manager BLUEWELL company. You decide, with the approval of stakeholders, in order to fast-track the project work to get the project done faster. When a fast track project, the following are likely to increase?


Options are :

  • None
  • cost
  • Required human resources
  • risk
  • Concerns about quality control

Answer : risk

CAP Certified Authorization Professional Practice Exam Set 6

Mark is an organization BFL project manager for the project. Probability and impact of the project and his team created a matrix RAG rating. There is a project team, a particular risk is some confusion and differences between how important and priority should pay attention to management. Here you can subscribe to determine the likelihood of the priority given risk,


Options are :

  • Risk response plan
  • Risk Management Plan
  • Lookup table
  • None
  • The project sponsor

Answer : Lookup table

What factors apply to security risks? Each correct answer presents a complete solution. Choose three.


Options are :

  • They can analyze risk analysis and determination
  • They can be completely removed by taking appropriate measures
  • They can be based on review of the potential risks and take responsible action to alleviate
  • They are considered an indication of vulnerabilities together.

Answer : They can analyze risk analysis and determination They can be based on review of the potential risks and take responsible action to alleviate They are considered an indication of vulnerabilities together.

Which of the following security level specifies what information, if disclosure of unauthorized parties can reasonably be expected to cause extremely serious harm to national security?


Options are :

  • None
  • Top-secret intelligence
  • confidential
  • confidential
  • Secret information

Answer : Top-secret intelligence

CAP Certified Authorization Professional Practice Exam Set 8

Which of the following roles are used to ensure the confidentiality, integrity and availability of services are considered to be accredited service (SLA) level?


Options are :

  • Security Officer
  • Service Level Manager
  • None
  • Configuration Manager
  • Change Manager

Answer : Security Officer

Step 1 DITSCAP C & kNonewn in the definition phase. The objective of this phase is to define the C & C & stress levels to identify the main roles and responsibilities, and to establish the method of security protocol. What is the active process at this point on? Each correct answer presents a complete solution. Check all that apply.


Options are :

  • You need to be allocated to a file
  • Counsel
  • Initial Certification Analysis
  • registered

Answer : You need to be allocated to a file Counsel registered

You are the organization's project manager. You have been working for qualitative risk analysis process to complete the project. The first tool you use, and assessment techniques that may be required thatyou what other risks identified characteristics of each project is?


Options are :

  • Risk category
  • Risk owners
  • cost
  • influences
  • None

Answer : influences

CAP Certified Authorization Professional Practice Exam Set 2

Which of the following file Nonetice as described below? "It has been working with the whole process of risk management to develop, which contains the qualitative risk analysis, quantitative risk analysis and risk response planning result."


Options are :

  • None
  • The quality management plan
  • The project
  • The quality management plan
  • Risk register

Answer : Risk register

Management and coordination of the implementation of the information security program of the following institutions of governance?


Options are :

  • Senior Management
  • None
  • Security Management Team
  • Security Officer
  • Division Director

Answer : Security Officer

Availability data security concept of the following statements is true?


Options are :

  • It ensures that None unauthorized or modified information process.
  • It specifies operations within a single system
  • None
  • It ensures that unauthorized changes are made by the authorized person or process information.
  • It ensures reliable and timely availability of resources.

Answer : It ensures reliable and timely availability of resources.

CAP Certified Authorization Professional Practice Exam Set 4

You work as a project manager BLUEWELL company has delayed the project work, which have a negative impact on the project schedule. You decide, with the approval of stakeholders, in order to fast-track the project work to get the project done faster. When a fast track project, which may increase?


Options are :

  • cost
  • None
  • risk
  • Required human resources
  • Concerns about quality control

Answer : risk

You are in charge of the Metropolitan Police Department of network and information security. Our main concern is that unauthorized parties can Nonet reach data. Why is this called?


Options are :

  • integrity
  • None
  • encryption
  • Confidence
  • Availability

Answer : Confidence

What methods can be used qualitative risk analysis process in order to improve the performance of the project manager of the project?


Options are :

  • None
  • Focus on high-priority risks.
  • The first concerns the short-term risk.
  • Risk analysis as much as possible, None matter who is at the beginning of a dangerous event.
  • Create a risk stratification, and transfer to a suitable risk analysis project team members.

Answer : Focus on high-priority risks.

CAP Certified Information Audit Process Practice Exam Set 1

GGH your company's project manager. The company has a reporting structure and organize your leader, you are ready to move in quantitative risk analysis. What are the things you need to quantify the risk in this scenario, the analysis of the project enter it?


Options are :

  • None
  • Quantitative risk analysis function STRU VA does Nonet occur by the project manager.
  • You need to risk register, risk management plan, the output of qualitative risk analysis, as well as any related organizational process assets.
  • You need to risk register, risk management plan, commitment functional managers, and all related organizational process assets.
  • You need to risk register, risk management plan, cost management plan, schedule management plan, as well as any related organizational process assets.

Answer : You need to risk register, risk management plan, cost management plan, schedule management plan, as well as any related organizational process assets.

Comment / Suggestion Section
Point our Mistakes and Post Your Suggestions