31 - Cyber Defense Flashcards
1
Q
What are the three General Security Principles to follow in the Cyber Domain?
A
- Least Privilege
- Defense in Depth
- Vigilance
2
Q
How can we execute Least Privilege?
A
- Remove Unnecessary Accounts and Services
- Minimize what executes with Elevated Privileges
3
Q
How can we execute Defense in Depth?
A
- Sandbox Processes
- Use a DMZ (De-militarized Zone) / Segregated Networks
4
Q
How can we execute Vigilance?
A
- Keep Systems Patched
- Keep and Actively Monitor Logs
- Monitor Inbound and Outbound Traffic