Thread Content
8.11--In the CAESARII version, those who answer correctly in the knowledge quiz receive 10 units of wealth, while those who answer incorrectly receive 3 units of wealth. Which of the following statements regarding the information system security assurance model is incorrect? A. The information system security assurance model outlined in the standard \"Information System Security Assurance Evaluation Framework – Part 1: Introduction and General Model\" (GB/T 20274.1-2006) takes risks and strategies as its foundation and core. B. The information system life cycle model in this framework is an abstract conceptual model; when implementing actual security measures for information systems, it can be modified and refined according to specific circumstances and requirements. C. Information system security assurance focuses on sustained, dynamic security over time, rather than just security at a particular point in time. D. Information system security assurance is primarily aimed at ensuring the confidentiality, integrity, and availability of information systems; organizations do not need to invest in the skills and training of the personnel responsible for operating, maintaining, and using these systems&
D. Information system security assurance primarily aims to ensure the confidentiality, integrity, and availability of information systems; organizations do not need to invest in the skills and training of the personnel responsible for the operation, maintenance, and use of these systems&
The following statement regarding the information system security assurance model is incorrect: (D) A. The information system security assurance model outlined in the standard \"Evaluation Framework for Information System Security Assurance – Part 1: Introduction and General Model\" (GB/T 20274.1-2006) takes risks and strategies as its foundation and core. B. The information system life cycle model in this framework is an abstract conceptual model; it can be modified and refined according to specific circumstances and requirements when implementing actual security measures for information systems. C. Information system security assurance focuses on sustained, dynamic security over time, rather than just security at a particular point in time. D. Information system security assurance is primarily aimed at ensuring the confidentiality, integrity, and availability of information systems; organizations do not need to invest in the skills and training of the personnel responsible for the operation, maintenance, and use of these systems
D. Information system security assurance primarily aims to ensure the confidentiality, integrity, and availability of information systems; organizations do not need to invest in the skills and training of the personnel responsible for the operation, maintenance, and use of these systems&