2-8 Flashcards

1
Q

What are some control guidance examples?

A

NIST SP 800-53, NIST CSF, ISO 27014:2020

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a control objective?

A

Statement of a desired results or purpose to be achieved by implementing a control or set of controls.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a countermeasure?

A

Controls implemented to address a specific threat. They are usually reactive whereas controls tend to be proactive.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is defense in depth?

A

Layered security of diverse controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the processes of fine tuning controls for an organization?

A

Scoping: Eliminating not applicable baselines, Tailoring: Customizing control to the organization, Compensating: Substituting a control with a different control, Supplementing: Augmenting the baseline recommended controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly