首页
外语
计算机
考研
公务员
职业资格
财经
工程
司法
医学
专升本
自考
实用职业技能
登录
计算机
The following scenario applies to questions 26 and 27. Charlie is a new security manager at a textile company that develops its
The following scenario applies to questions 26 and 27. Charlie is a new security manager at a textile company that develops its
admin
2013-12-19
27
问题
The following scenario applies to questions 26 and 27.
Charlie is a new security manager at a textile company that develops its own proprietary software for internal business processes. Charlie has been told that the new application his team needs to develop must comply with the ISO/IEC 42010 standard. He has found out that many of the critical applications have been developed in the C programming language and has asked for these applications to be reviewed for a specific class of security vulnerabilities.
Which of the following best describes the standard Charlie’s team needs to comply with?
选项
A、International standard on system design to allow for better quality, interoperability, extensibility, portability, and security
B、International standard on system security to allow for better threat modeling
C、International standard on system architecture to allow for better quality, interoperability, extensibility, portability, and security
D、International standard on system architecture to allow for better quality, extensibility, portability, and security
答案
C
解析
C正确。ISO/IEC 420lO的目标是将系统体系结构的使用进行国际标准化,而不是让产品开发人员提供他们各自的方法。系统体系结构的规范性方法有助于带来更好的质量、互操作性、扩展性、可移植性和安全性。
A不正确。因为这个答案故意说的是“设计”而不是“体系结构”。有些人错误地认为它们是相同的东西,但是体系结构在设计之前就已经出现。与设计相比,体系结构工作在一个更高、更战略化水平。软件开发逐渐变成一个更有纪律的行业,它正朝着正式的体系结构需求发展。
B不正确。因为问题中描述的标准并不是处理线程模型。ISO/IEC 42010解决了系统体系结构需求和指南。
D不正确。与C相比,D不算是最佳答案。这个标准还解决了互操作问题,而这个选项没有列出来。
转载请注明原文地址:https://jikaoti.com/ti/NlO7FFFM
0
CISSP认证
相关试题推荐
Individualsandbusinesseshavelegalprotectionforintellectualpropertytheycreateandown.Intellectualproper【C1】______fro
Individualsandbusinesseshavelegalprotectionforintellectualpropertytheycreateandown.Intellectualproper【C1】______fro
Iftheworld’seducationsystemshaveacommonfocus,itistoturnoutschool-leaverswhoareproficientinmaths.Governments
About3billionpeoplelivewithin100milesofthesea,anumberthatcoulddoubleinthenextdecadeashumansflocktocoasta
Itishardtomakemoneypeddlingsocialmediaanywhere.Duringtheirfirstfewyearsinbusiness,FacebookandTwitterlostpo
ScientificMethodisatermdenotingtheprinciplesthatguidescientificresearchandexperimentation,andalsothephilosophic
APerpetualMotionMachineisafascinatingandlong-discussedtopicthatmoveswellbeyondthescopeofphysics.Inshort,Ape
TheU.S.PostalService(USPS)continuestobleedredink.Itreportedanetlossof$5.6billionforfiscal2016,the10thst
In a public-key cryptosystem,(71)encrypted with the public key can only be deciphered with the private key from the same(72). Co
随机试题
下列疾病哪些可出现肝界下移【】
一患者突感心悸、气短,心电图为PR间期逐渐延长,最后脱落一组QRS波群,QRS波群宽度<0.12秒,最可能是
自然人犯罪应当具备三个条件,不属于这三个条件的是( )。
关于设计采购建造模式的特点,下列说法中正确的有()
在房地产投资的互斥方案比选中,如果差额投资内部收益率大于基准收益率且有足够的资金,则应选择投资额较大的方案。()
天然气集输管线放空时,应先点火后放空。当采取多处放空管对输气管线的天然气进行放空时,由于处于低洼位置的放空管(),因此放空管火焰高度降到1m以下时,应立即关闭放空阀。
()负责单位内部会计监督制度的组织实施,对本单位内部会计监督制度的建立及有效实施承担最终责任。
某企业编制生产预算和材料采购预算如下述两张表(见表1、表2),根据企业以往经验,企业将商品存货的期末库存确定为下季度销量的30%,材料存货的期末库存确定为下期生产需要量的20%,每季度的购料款本季度支付30%,下一季度支付其余的70%,年初商品库存、材料库
对公安工作的功过是非,要依靠()的检验和评价。
目前国内关于个人信息保护的法规分散,既缺乏对个人信息的界定,也缺乏可操作的标准,执法主体缺位,执法力度不足。对于个人信息保护的难题,业内讨论认为主要有三方面:保护程度界定,难以区别正当或非法使用个人信息;信息泄露取证,难以确定个人信息是在哪个环节发生泄露;
最新回复
(
0
)