Domain 1: Security and Risk Management - Security Frameworks - Enterprise Architecture Development
35 important questions on Domain 1: Security and Risk Management - Security Frameworks - Enterprise Architecture Development
Which two approaches are there when securing an organization?
2. Enterprise security Architecture
What is the OSI model?
What is the difference between a architecture framework and an actual architecture?
- Higher grades + faster learning
- Never study anything twice
- 100% sure, 100% understanding
Why do companies have different architectures?
1. business drivers
2. Security and regulatory requirements
3. Cultures
4. Organizational structures
What's the first step in developing an architecture?
What's the second step of developing an architecture?
What are the advantages of using an enterprise architecturen?
2. It gives you inside about how a change on one level will affect items at other levels. Example: Will new networking devices be required when i change level above.
Why do we need enterprise architecture frameworks?
What law is being introduced in the U.S. To minimize the failure cost of implementing the wrong systems and application?
Which enterprise architecture framework was one of the first that has been introduced and by who?
During which period in time was the Zachman architecture framework being developed?
What is the goal of the Zachman framework?
Who created the TOGAF framework?
In which way can individual architecture types be created by TOGAF?
Where is the DoDAF framework good at?
On which 7 areas lies the focus of DoDAF?
1. Command
2. Control
3. Communications
4. Computer
5. Intelligence
6. Surveillance and reconnaissance systems
7. Processes
What is a very important aspect of DoDAF to work properly?
Who developed the MODAF?
Besides DoDAF and MODAF being used only for military purposes, where it is also being used for?
How do you determine which framework is best for your organization?
What is the enterprise security architecture about?
Where does ISMS stand for?
What is the main reason to develop a enterprise security architecture?
Why do many organizations not develop and roll out an enterprise security architecture?
Where does SABSA stand for?
SABSA provides a life-cycle model, what is meant by that?
Which 4 things are important to understood to develop en implement a successfull enterprise security architecture
2. Business enablement
3. Process enhancement
4. Security effectiveness
What is meant by strategic alignment?
Security efforts need to provide survival for a company, but also.....
What does Business Enablement mean?
What is meant with process reengineering?
What is meant by process enhancement?
What is Security Effectiveness about?
1. Metrics
2. Meeting service level agreement (SLA) requirements
3. Achieving a return on investment (ROI)
4. Meeting set baselines
5. Providing management with a dashboard or a balanced scorecard system
These are ways to determine how useful the current security solutions and architecture as a whole are performing. Are the controls in place providing the necessary level of protection?
What are the differences between Enterprise and system architectures?
2. System architecture addresses the structure of software and computing components.
What layers should the rules within an organizational security policy support?
2. The security kernel of OS
3. Hardware security provided by computer's CPU
The question on the page originate from the summary of the following study material:
- A unique study and practice tool
- Never study anything twice again
- Get the grades you hope for
- 100% sure, 100% understanding