2 Fundamentals of Security: Accounting Flashcards
A security measure that ensures all user activities during a communication or transaction are properly tracked and recorded
Accounting
Provides a chronological record of all user activities that can be used to trace changes, unauthorized access or anomalies back to a source or point in time
audit trail
maintains a comprehensive record of all user’s activities
regulatory compliance
Uses detailed accounting and event logs that can help cyber security experts understand what happened how it happened and how to prevent similar incidents from occuring again
forensic analysis
organizations can optimize system performance and minimize costs by tracking resource utilization and allocation decisions
resource optimization
thorough accounting systems ensures user’s actions are monitored and logged deterring potential misuse and promoting adherence to the organization’s policies and procedures
accountability
How to perform accounting
syslog servers
network analysis tools
security information and event management systems SIEM
Used to aggregate logs from various network devices and systems so that system administrators can analyze them to detect patterns or anomolies in the organization’s system
syslog servers
USed to capture and analyze network traffic
network analysis tools
provides us with real time analysis of security alerts generated by various hardware and software infrastructure in an organization
SIEM systems security information and event management