107 Cyber Security Flashcards
Define IA
Information Assurance- are measures that protect and defend information systems
Define DCO
Defensive cyber operations- passive and active cyberspace operations intended to preserve the ability to utilize friendly cyberspace
Define OCO
Offensive Cyberspace Operations- cyberspace operations intended to project power by force through cyberspace
Certification
evaluation of the security features of an IS to see if they meet certain security requirements
Accreditation
Process where certification on competency, authority, or credibility is presented
NAO
Navy Authorizing Official- responsible for authorizing the systems operation based on achieving and maintaining an acceptable risk posture
System Security Plan
provides an overview of the security requirements of the system
ATO
Authority to Operate- official decision to authorize the operation of a system
IATO
Interim authority to operate- temporary authorization granted by NAO for an information system based on preliminary results of an evaluation
Configuring Management
management of security features and assurances through control of changes to the systems through their lifecycle
Risk Management
The process that allows IT managers to balance the operational and economic costs of protective measures and achieve gains in the mission by protecting the IT systems
5 attributes of Cyber Security
confidentiality
integrity
availability
non-repudiation
authentication
9 categories of computer incidents
root level incident
user level incident
denial of service incident
malicious logic incident
unsuccessful activity attempt event
non compliance activity event
reconnaissance event
investigating event
explained anomaly event
DoN World Wide Web security policy
everything posted online must be reviewed as to not violate OPSEC
IAVA
Information Assurance Vulnerability Alert- addressed severe network vulnerabilities resulting in immediate and sever threats