**Identity ManagementYour DoD Common Access Card (CAC) has a Public Key Infrastructure (PKI) token approved for access to the NIPRNet. Connect to the Government Virtual Private Network (VPN). **Social NetworkingAs someone who works with classified information, what should you do if you are contacted by a foreign national seeking information on a research project? Web(a) No person may be given access to classified information or material originated by, in the custody, or under the control of the Department, unless the person - (1) Has been determined to be eligible for access in accordance with sections 3.1-3.3 of Executive Order 12968; (2) Has a demonstrated need-to-know; and (3) Has signed an approved nondisclosure endstream endobj 291 0 obj <. Which of Smiths points effectively support the conclusion that consumers have strong Immediately notify your security POC. *SpillageWhich of the following actions is appropriate after finding classified information on the Internet? How should you respond? WebDOL internal policy specifies the following security policies for the protection of PII and other sensitive data: It is the responsibility of the individual user to protect data to which they have access. Government owned PEDs if expressed authorized by your agency. Spillage can be either inadvertent or intentional. What is the best response to an incident such as opening an uncontrolled DVD on a computer in a Sensitive Compartmented Information Facility (SCIF)? Report the crime to local law enforcement. An individual can be granted access to classified information provided the following criteria are satisfied? -Darryl is managing a project that requires access to classified information. *Insider Threat Which type of behavior should you report as a potential insider threat? WebStore classified data appropriately in a GSA-approved vault/container. Need-to-know is a determination that an individual requires access to specific classified information in the performance of (or assist in the performance of) lawful and authorized government functions and duties. & \text { South Winery } & \text { North Winery } & \text { East Winery } & \text { West Winery } \\ **Social EngineeringWhat action should you take with an e-mail from a friend containing a compressed Uniform Resource Locator (URL)? **Mobile DevicesWhich of the following is an example of removable media? 0000015053 00000 n What type of activity or behavior should be reported as a potential insider threat? *Mobile DevicesWhat can help to protect data on your personal mobile device?-Secure it to the same level as Government-issued systems. Which of the following is true of protecting classified data? Spillage occurs when information is spilled from a higher classification or protection level to a lower classification or protection level. How many potential insider threat indicators does a person who is married with two children, vacations at the beach every year, is pleasant to work with, but sometimes has poor work quality display? **Physical SecurityWithin a secure area, you see an individual who you do not know and is not wearing a visible badge. ALL OF THE ABOVE cyber. Suggestions for dealing with these problems include encouraging the *Insider Threat Which type of behavior should you report as a potential insider threat? Use only your personal contact information when establishing your account. A colleague has won 10 high-performance awards, can be playful and charming, is not currently in a relationship, and is occasionally aggressive in trying to access sensitive information. WebTheodore is seeking access to classified information that he does not need to know to perform his job duties. Land where the soil is fertile enough to grow grapes necessary for the wine production How many potential insider threat indicators does a person who is playful and charming, consistently wins performance awards, but is occasionally aggressive in trying to access sensitive information display? Protecting CUI . You should only accept cookies from reputable, trusted websites. Which of the following is an example of near field communication (NFC)?-A smartphone that transmits credit card payment information when held in proximity to a credit card reader. *Insider ThreatWhich type of behavior should you report as a potential insider threat? How should you respond to the theft of your identity?-Notify law enforcement. How should you respond? -DELETE THE EMAIL. **Mobile DevicesWhat should you do when going through an airport security checkpoint with a Government-issued mobile device? Senior government personnel, military or civilian. Which of the following practices reduces the chance of becoming a target by adversaries seeking insider information? How many potential insider threat indicators does a person who is playful and charming, consistently win performance awards, but is occasionally aggressive in trying to access sensitive information? a year. What must users ensure when using removable media such as a compact disk (CD)? 1 answer. What should you do? Which of the following is a god practice to protect classified information? WebClassified information that should be unclassified and is downgraded. restaurants. 1 Answer 0 votes answered Aug 3, 2022 by kabita (13.8k points) Best answer Only persons with appropriate clearance, a non-disclosure agreement, and need-to Baker was Ms. Jones's psychiatrist for three months. What type of activity or behavior should be reported as a potential insider threat? WebWhich of the following individuals can access classified data? Which of the following is NOT a correct way to protect sensitive information? *Insider ThreatWhat threat do insiders with authorized access to information or information systems pose?-They may wittingly or unwittingly use their authorized access to perform actions that result in the loss or degradation of resources or capabilities. WebClassified data: Must be handled and stored properly based on classification markings and handling caveats Can only be accessed by individuals with all of the following: o Appropriate clearance o Signed and approved non- disclosure agreement o Need-to-know . A type of phishing targeted at senior officials. Directives issued by the Director of National Intelligence. Coworker making consistent statements indicative of hostility or anger toward the United States and its policies. -Put the CD in the trash DoD employees are prohibited from using a DoD CAC in card-reader-enabled public devices. Investigate the link's actual destination using the preview feature. WebBe aware of classification markings and all handling caveats. When operationally necessary, owned by your organization, and approved by the appropriate authority. A person who does not have the required clearance or assess caveats comes into possession of SCI in any manner. 1312.23 Access to classified information. A colleague complains about anxiety and exhaustion, makes coworkers uncomfortable by asking excessive questions about classified projects, and complain about the credit card bills that his wife runs up. Contact the IRS using their publicly available, official contact information. Note any identifying information and the website's Uniform Resource Locator (URL). **Classified DataWhich classification level is given to information that could reasonably be expected to cause serious damage to national security? Spear phishing. Webasked in Internet by voice (265k points) Question : Which of the following is true about unclassified data? How many potential insiders threat indicators does this employee display. WebClassified information that should be unclassified and is downgraded. Which of the following individuals can access classified data? *Spillage.What should you do if a reporter asks you about potentially classified information on the web? What is a proper response if spillage occurs. A coworker uses a personal electronic device in a secure area where their use is prohibited. true-statement. Ensure proper labeling by appropriately marking all classified material and, when required, sensitive material. What action should you take? @870zpVxh%X'pxI[r{+i#F1F3020d`_ if>}xp20Nj9: bL This includes government officials, military personnel, and intelligence analysts. What should you do if you receive a game application request that includes permission to access your friends, profile information, cookies, and sites visited? Appropriate clearance; signed and approved non-disclosure agreement; and need-to-know. *TravelWhat security risk does a public Wi-Fi connection pose? internet-quiz. E-mailing your co-workers to let them know you are taking a sick day. *Social EngineeringWhat is a common indicator of a phishing attempt? internet. Coworker making consistent statements indicative of hostility or anger toward the United States and its policies. *Malicious CodeAfter visiting a website on your Government device, a popup appears on your screen. endstream endobj 321 0 obj <>/Filter/FlateDecode/Index[54 236]/Length 31/Size 290/Type/XRef/W[1 1 1]>>stream In order to access this information, these individuals must have security clearance from the appropriate government agency. What is the best choice to describe what has occurred? **Insider ThreatBased on the description that follows, how many potential insider threat indicator(s) are displayed? What is the best way to protect your common access card? **Physical SecurityWhat is a good practice for physical security? Under what circumstances is it acceptable to use your Government-furnished computer to check personal e-mail and do other non-work-related activities? *Mobile DevicesWhich of the following is an example of removable media? When is the safest time to post details of your vacation activities on your social networking website? Where would you direct him to obtain benchmarking data to help him with his assessment? He has the appropriate clearance and a signed, approved, non-disclosure agreement. Coworker making consistent statements indicative of hostility or anger toward the United States in its policies. *Sensitive Compartmented InformationWhen is it appropriate to have your security badge visible within a Sensitive Compartmented Information Facility (SCIF)? to examine the competitive strategies employed by various French wineries. It may expose the connected device to malware. **Classified DataWhich type of information could reasonably be expected to cause serious damage to national security if disclosed without authorization? cyber-awareness. **Physical SecurityAt which Cyberspace Protection Condition (CPCON) is the priority focus on critical functions only? *Sensitive Compartmented InformationWhat action should you take if you become aware that Sensitive Compartmented Information (SCI) has been compromised? **Website UseWhich of the following statements is true of cookies? Prepare the adjusting entry to record bad debts expense at December 31, 2017. Sensitive information may be stored on any password-protected system. Social Security Number; date and place of birth; mother's maiden name. Estimate the required balance of the Allowance for Doubtful Accounts at December 31, 2017, using the aging of accounts receivable method. **Insider ThreatWhat do insiders with authorized access to information or information systems pose? Based on the description that follows, how many potential insider threat indicator(s) are displayed? A board member of an NFP hospital has asked you what resources are available to help him in assessing the financial and operational performance of the hospital. Store classified data appropriately in a GSA-approved vault/container. A random sample of surgical procedures was selected each month for 30 consecutive months, and the number of procedures with postoperative complications was recorded. All of the above. The projected additional sales revenue in year 111 is $75,000\$ 75,000$75,000, with associated expenses of $25,000\$ 25,000$25,000. Identify and disclose it with local Configuration/Change Management Control and Property Management authorities. Smith tells VanDriesen, In my report I have classified the South Which of the following is NOT an appropriate way to protect against inadvertent spillage?-Use the classified network for all work, including unclassified work. Avoid using the same password between systems or applications. internet. WebOnly persons with appropriate clearance, a non-disclosure agreement, and need-to-know can access classified data. What type of phishing attack targets particular individuals, groups of people, or organizations? Data states data exists in one of three statesat rest, in process, or in transit. *Home Computer SecurityWhich of the following is a best practice for securing your home computer?-Create separate accounts for each user. Data format data can be either structured or unstructured. WebWhich of the following individuals can access classified data? What information posted publicly on your personal social networking profile represents a security risk? Which of the following is an appropriate use of Government e-mail? **Insider ThreatHow many potential insider threat indicators does a coworker who often makes others uneasy by being persistent in trying to obtain information about classified projects to which he has no access, is boisterous about his wife putting them in credit card debt, and often complains about anxiety and exhaustion display? Only persons with appropriate clearance, a non-disclosure agreement, and need-to-know can access classified data. tastes. When opening an email, what caution should you use? Darryl is managing a project that requires access to classified information. It displays a label showing maximum classification, date of creation, point of contact, and Change Management 9CM) Control Number. Only persons with appropriate clearance, a non-disclosure agreement, and need-to-know can access classified data. Don't talk about work outside your workspace unless it is a specifically designated public meeting environment and is controlled by the event planners. **Classified DataWhich of the following is true of telework? Need-to-know. 1 answer. Protecting CUI . ~All documents should be appropriately marked, regardless of format, sensitivity, or classification.Unclassified documents do not need to be marked as a SCIF.Only paper documents that are in open storage need to be marked. Data classification helps organizations answer important questions about their data that inform how they mitigate risk and manage data governance policies. Which type of behavior should you report as a potential insider threat? Maria received an assignment to support a project that requires access to classified information. What are some actions you can take to try to protect your identity? In the body of Smiths report, she Clearance eligibility at the appropriate level. *Social NetworkingYour cousin posted a link to an article with an incendiary headline on social media. *Sensitive Compartmented InformationWhat guidance is available for marking Sensitive Compartmented Information (SCI)? Which of the following may help to prevent spillage? What are some actions you can take to try to protect you identity? 3. 0000003201 00000 n \hline \text { Founding date } & 1750 & 1903 & 1812 & 1947 \\ Which of the following individuals can access classified data? How can you guard yourself against Identity theft? Which of the following individuals can access classified data? To protect CUI: Properly mark all CUI Regardless of state, data classified as confidential must remain confidential. What type of activity or behavior should be reported as a potential insider threat? He has the appropriate clearance and a signed, approved non-disclosure agreement. What is a proper response if spillage occurs. Which of the following is NOT a best practice to preserve the authenticity of your identity? Insiders are given a level of trust and have authorized access to Government information systems. When is it appropriate to have your securing badge visible with a sensitive compartmented information facility? over the past five years, the French wine industry has not responded to changing consumer Coworker making consistent statements indicative of hostility or anger toward the United States and its policies. Who can be permitted access to classified data? P2P (Peer-to-Peer) software can do the following except: Allow attackers physical access to network assets. Web*Classified Data Which of the following individuals can access classified data?-Darryl is managing a project that requires access to classified information. Report the crime to local law enforcement, A type of phishing targeted at senior officials. Which of the following individuals can access classified data? Immediately notify your security POC. *Classified Data Which of the following individuals can access classified data? Evaluate the causes of the compromiseE-mail detailed information about the incident to your security point of contact (Wrong)Assess the amount of damage that could be caused by the compromise~Contact your security point of contact to report the incident. At the same time, the distribution of income has become more unequal. *Sensitive Compartmented InformationWhat is Sensitive Compartmented Information (SCI)? False Which of the following is NOT sensitive information? *Sensitive Compartmented InformationWhen is it appropriate to have your security badge visible? An individual can be granted access to classified information provided the following criteria are satisfied? WebThere are a number of individuals who can access classified data. Be aware of classification markings and all handling caveats. Your cousin posted a link to an article with an incendiary headline on social media. Memory sticks, flash drives, or external hard drives. What are some potential insider threat indicators? Which of the following should you NOT do if you find classified information on the internet?-Download the information. Use only your personal contact information when establishing your account, *Controlled Unclassified InformationSelect the information on the data sheet that is personally identifiable information (PII) but not protected health information (PHI), Jane JonesSocial Security Number: 123-45-6789, *Controlled Unclassified InformationSelect the information on the data sheet that is protected health information (PHI), Interview: Dr. Nora BakerDr. Which of the following individuals can access classified data 2022? How many potential insider threat indicators does a coworker who often makes others uneasy by being persistent in trying to obtain information about classified projects to which he has no access, is boisterous about his wife putting them in credit card debt, and often complains about anxiety and exhaustion display? Regardless of state, data classified as confidential must remain confidential. *Malicious CodeWhich of the following statements is true of cookies? Data states data exists in one of three statesat rest, in process, or in transit. Maria received an assignment to support a project that requires access to classified information. Follow instructions given only by verified personnel. The end WebOnly persons with appropriate clearance, a non-disclosure agreement, and need-to-know can access classified data. internet-quiz. 1312.23 Access to classified information. a unidentifiable email requiring you to use a special link to verify log in information. Shred personal documents; never share passwords; and order a credit report annually. **Social EngineeringWhich of the following is a way to protect against social engineering? \text { Generic competitive strategy } & ? internet. WebThis information can come in the form of, but is not limited to, podcasts, print articles, internet-based articles, books, journals, speeches, television broadcasts, blogs, and postings. Data classification is the process of analyzing structured or unstructured data and organizing it into categories based on file type, contents, and other metadata. Classified material must be appropriately marked. Who can be permitted access to classified data? Darryl is managing a project that requires access to classified information. Web*Classified Data Which of the following individuals can access classified data?-Darryl is managing a project that requires access to classified information. What action should you take?-Research the source of the article to evaluate its credibility and reliability. *Social NetworkingWhich of the following is a security best practice when using social networking sites? Data classification is the process of analyzing structured or unstructured data and organizing it into categories based on file type, contents, and other metadata. An individual can be granted access to classified information provided the person has been in the Armed Services for 10 years. **Social EngineeringWhich may be a security issue with compressed Uniform Resource Locators (URLs)? Use a common password for all your system and application logons. Which of the following can an unauthorized disclosure of information classified as Confidential reasonably be expected to cause? He has the appropriate clearance and a signed, approved non-disclosure agreement. Which may be a security issue with compressed URLs? When may you be subject to criminal, disciplinary, and/or administrative action due to online misconduct? Classified information is that which a government or agency deems sensitive enough to national security that access to it must be controlled and restricted. **Social EngineeringWhat is TRUE of a phishing attack? What action should you take? Jarden prepares a schedule of its December 31, 2017, accounts receivable by age. replies, I have met members of the management team from the South Winery at a couple of *SpillageWhat should you do if a reporter asks you about potentially classified information on the web? **Classified DataWhat level of damage can the unauthorized disclosure of information classified as Confidential reasonably be expected to cause? startxref Which of the following does a security classification guide provided? WebOnly persons with appropriate clearance, a non-disclosure agreement, and need-to-know can access classified data. What is a security best practice to employ on your home computer? View e-mail in plain text and don't view e-mail in Preview Pane. *SpillageWhat should you do if you suspect spillage has occurred? **Insider ThreatBased on the description that follows, how many potential insider threat indicator(s) are displayed? *Controlled Unclassified InformationWhich of the following is NOT an example of CUI? **Insider ThreatWhat type of activity or behavior should be reported as a potential insider threat? After you have returned home following the vacation. Spillage can be either inadvertent or intentional. 1.1.1. -Put the CD in the trash DoD employees are prohibited from using a DoD CAC in card-reader-enabled public devices. data. Mark SCI documents, appropriately and use an approved SCI fax machine. A coworker removes sensitive information without authorization. xref Something you possess, like a CAC, and something you know, like a PIN or password. WebData classification is the process of organizing data into categories for its most effective and efficient use. At the beginning of the year, Bryers Incorporated reports inventory of $8,000. On December 31, 2017, the company's Allowance for Doubtful Accounts has an unadjusted credit balance of$14.500. *Malicious CodeWhich of the following is NOT a way that malicious code spreads? WebClassified information may be made available to a person only when the possessor of the information establishes that the person has a valid need to know and the access is essential to the accomplishment of official government duties. **Insider ThreatWhich scenario might indicate a reportable insider threat? WebYou must have your organizations permission to telework. What is the best practice while traveling with mobile computing devices? 0000011141 00000 n **Social NetworkingWhich of the following is a security best practice when using social networking sites? true-statement. Which of the following is a best practice for securing your home computer? Follow the instructions given only by verified personnel. 1 Answer 0 votes answered Aug 3, 2022 by kabita (13.8k points) Best answer Only persons with appropriate clearance, a non-disclosure agreement, and need-to 0000009864 00000 n A colleague often makes others uneasy with her persistent efforts to obtain information about classified project where she has no need-to-know, is vocal about her husband overspending on credit cards, and complains about anxiety and exhaustion. You receive an email from the Internal Revenue Service (IRS) demanding immediate payment of back taxes of which you were not aware. \end{array} **Classified DataHow should you protect a printed classified document when it is not in use? Which of the following individuals can access classified data 2022? Senior government personnel, military or civilian. *Insider Threat Which type of behavior should you report as a potential insider threat? Write your password down on a device that only you access (e.g., your smartphone). You know that this project is classified. Which of the following individuals can access classified data? In which situation below are you permitted to use your PKI token? Store it in a General Services Administration (GSA)-approved vault or container. *Mobile DevicesWhat can help to protect the data on your personal mobile device?