107: Cyber Security Flashcards

(15 cards)

1
Q

107.2a
Define Certification

A

evaluation of security features

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

107.2b
Define Accreditation

A

process in which certification of competency, authority, and credibility is presented

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

107.2e
Define ATO

A

Authority To Operate (ATO)

official management decision to operate an Information System (IS)

may be issued for up to 3 years

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

107.2f
Define IATO

A

Interim Authority to Operate (IATO)

limited authorization to operate under specific terms and conditions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

107.4
Discuss risk management

A

the process that balances operational and economic costs of protective measures to achieve mission capability

effective risk management reduces risk assumed by all systems to an acceptable level for operational use

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

107.5a
Describe the confidentiality attribute of cybersecurity

A

assurance of no unauthorized disclosure of information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

107.5b
Describe the integrity attribute of cybersecurity

A

protection against unauthorized modification or destruction of information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

107.5c
Describe the availability attribute of cybersecurity

A

timely, reliable access to data and information systems for authorized users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

107.5d
Describe the Non-repudiation attribute of cybersecurity

A

proof of data delivery & proof of sender’s identity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

107.5e
Describe the Authentication attribute of cybersecurity

A

assurance of user identity & established validity of a transmission

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

107.8f
Define Patch

A

a fix for a vulnerability or an operational enhancement

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

107.10
Explain the difference between vulnerability and threat

A

a vulnerability is a weakness; a threat is a possible exploiter of a weakness

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

107.11
State the duties and responsibilites of the ISSM and ISSO

A

Information System Security Manager & Officer
Manager: principal advisor on all matters involving IS security
Officer: Supports the ISSM and manages IS configurations
** NIOC Pacific Feb2025 ISSO - Chief Johnson

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

107.13
Discuss the role and responsibilities of Navy Red and Blue teams

A

Navy Red does penetration testing of systems and networks to find vulnerabilities (increases offense)
Navy Blue does system hardening of systems and networks (increases defense)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

107.15
Explain what constitues PII and the importance of safeguarding

A

Personally Identifiable Information
any information that could potentially identify a specific person

How well did you know this?
1
Not at all
2
3
4
5
Perfectly