(1) Controls Review Flashcards
What do cybersecurity professionals do to reduce the likelihood and impact of identified risks?
Cybersecurity professionals use concepts like risk acceptance, risk avoidance, risk mitigation, and risk transference to lower the likelihood and impact of risks identified during risk assessments.
What are technical controls?
Technical controls are systems, settings, and software that carry out actions that maintain confidentiality, integrity, and/or availability requirements.
What are examples of technical controls?
Examples of technical controls include a secure network construction and security of endpoints, as examples
What are operational controls?
Operational controls are those that help strengthen cybersecurity.
What are examples of operational controls?
Examples of operational controls include pentests, reverse engineering, and software analysis.