The ________ determines the impact that a specific technology or approach can have on the organization’s information assets and what it may cost.
Cost Benefit Analysis
____________ focuses on integrating the need for the development team to provide iterative and rapid improvements to system functionality and the need for the operations team to improve security and minimize the disruption from software release cycles.
DevOps
Planning for the implementation phase requires the creation of a detailed ___________, which is often assigned either to a project manager or the project champion.
Project Plan
In project planning, the tasks or action steps that come before the specific task at hand are commonly referred to as ____________.
Predeccessors
The optimal time frame for _________ is usually one to three weeks before the new policies and technologies come online.
training
The ________ Development Life Cycle (SDLC) is a general methodology for the design and implementation of an information system
Systems
_______________ management is the process of identifying and controlling the resources applied to a project as well as measuring progress and adjusting the process as progress is made toward the goal.
Project
A task or subtask becomes a(n) ________ when it can be completed by one individual or skill set and when it includes a single deliverable.
action step
Most information security projects require a trained project _________ - CISO or a skilled IT manager who is trained in project management techniques.
manager
Once a project is underway, it is managed using a process known as ________, which ensures that progress is measured periodically.
gap analysis
The ____________ phase of the SDLC examines the event or plan that initiates the process and specifies the objectives, constraints, and scope of the project
Investigation
Corrective action decisions are usually expressed in terms of_________.
trade-offs
A direct changeover is also known as going________.
Cold turkey
The primary drawback to the _______________ approach is that if the new system fails or needs modification, users may be without services while the system’s bugs are worked out.
direct changeover
The ______________ strategy works well when an isolated group can serve as a test area, which prevents any problems with the new system dramatically interfering with the performance of the organization as a whole.
Pilot implementation
A proven method for prioritizing a program of complex change is the _________ method.
Bull's eye
An ideal organization fosters ________ to change, meaning the the organization understands that change is a necessary part of the culture and that embracing change is more productive than fighting it.
resilience
A methodology and formal development strategy for the design and implementation of an information system is referred to as a _____.
Systems Development Life Cycle
An emerging methodology to integrate the effort of the development team and the operations team to improve the functionality and security of applications is known as _____.
DevOps
A type of SDLC in which each phase has results that flow into the next phase is called the _____ model.
Waterfall
During the _____ phase, specific technologies are selected to support the alternatives identified and evaluated in the prior phases.
Physical Design
Which of the following phases is often considered the longest and most expensive phase of the systems development life cycle?
maintenance and change
Organizations are moving toward more _____-focused development approaches, seeking to improve not only the functionality of the systems they have in place, but consumer confidence in their product.
Security
The _____ design phase of an SDLC methodology is implementation independent, meaning that it contains no reference to specific technologies, vendors, or products.
Logical
A(n) _____ is a simple project management planning tool used to break the project plan into smaller and smaller steps.
WBS
If the task is to write firewall specifications for the preparation of a(n) _____, the planner would note that the deliverable is a specification document suitable for distribution to vendors.
RFP
The date for sending the final RFP to vendors is considered a milestone because it signals that __________.
all RFP preparation work is complete
A(n) _____ determines the impact that a specific technology or approach can have on the organization’s information assets and what it may cost.
CBA
Many public organizations must spend all budgeted funds within the fiscal year—otherwise, the subsequent year’s budget is _____.
Reduced by the unspent amount
In a _____ when significant deviation occurs, corrective action is taken to bring the deviating task back into compliance with the project plan; otherwise, the project is revised in light of the new information.
Gap Analysis