用看的、听的学真题

study by eyes and ears.

  1. 首页
  2. 系统分析师
  3. 第9章 信息安全
  4. 真题列表

第9章 信息安全

【71-75】During the systems analysis phase, greater user involvement usually results in better communication, faster development times, and more satisfied users.There are three common team-based approaches that encourage system
users to participate actively in various development tasks.1)(71)is a popular fact-finding technique that brings users into the development process as active participants. The end product of the approach is a requirements model.2)(72)is a team-based technique that speeds up information systems development and produces a functioning information system. The approach consists of several phases.The(73)combines elements of the systems planning and systems analysis phases of tbe SDLC.Users, managers, and IT staff members discuss and agree on business needs, project scope, constraints, and system requirements.During(74),users interact with systems analysts and develop models and prototypes that represent all system processes, outputs, and inputs.3)(75)attempt to develop a system incrementally by building a series of prototypes and constantly adjusting them to user requirements.

真题详情及解析

【9】确保计算机系统机密性的方法不包括(9)

真题详情及解析

【61-62】信息系统的安全是个复杂的综合体,涉及系统的方方面面,其中(61)是指保护计算机设备、设施和其他媒体免遭地震、水灾、火灾、有害气体和其他环境事故(例如,电磁辐射等)破坏的措施和过程。(62)是计算机信息系统安全的重要环节,其实质是保证系统的正常运行,不因偶然的或恶意的侵扰而遭到破坏,使系统可靠、连续地运行,服务不被中断。

真题详情及解析

【17-18】在信息安全领域,基本的安全性原则包括保密性(Confidentiality)、完整性(Integrity)和可用性(Availability)。保密性指保护信息在使用、传输和存储时(17)。信息加密是保证系统保密性的常用手段。使用哈希校验是保证数据完整性的常用方法。可用性指保证合法用户对资源的正常访问,不会被不正当地拒绝。(18)就是破坏系统的可用性。

真题详情及解析

【62-63】ISO 7498-2标准涉及到的5种安全服务是(62)。可信赖计算机系统评价准则(TCSEC)把计算机系统的安全性分为4大类7个等级,其中的C2级是指(63)

真题详情及解析

【70】网络安全体系设计可从物理线路安全、网络安全、系统安全、应用安全等方面来进行。其中,数据库容灾属于(70)

真题详情及解析

【8-9】信息系统安全可划分为物理安全、网络安全、系统安全和应用安全,(8)属于系统安全,(9)属于应用安全。

真题详情及解析

【68】在对服务器的日志进行分析时,发现某一时间段,网络中有大量包含“USER""PASS"负载的数据,该异常行为最可能是(68)

真题详情及解析

【6】下面关于钓鱼网站的说法中错误的是(6)

真题详情及解析

【6】关于网络安全,以下说法中正确的是(6)

真题详情及解析
培训报名