4.0 Reporting and Communication Flashcards

1
Q

Vulnerabilities

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Affected hosts

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Risk score

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Mitigation

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Recurrence

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Prioritization

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Compliance reports

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Action plans

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Configuration management

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Patching

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Compensating controls

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Awareness, education, and training

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Memorandum of understanding (MOU)

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Service-level agreement (SLA)

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Organizational governance

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Business process interruption

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Degrading functionality

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Legacy systems

A
19
Q

Proprietary systems

A
20
Q

Metric and key performance indicators (KPIs)

A
21
Q

Trends

A
22
Q

Top 10

A
23
Q

Critical vulnerabilities and zero-days

A
24
Q

SLOs

A
25
Q

Stakeholder identification and communication

A
26
Q

Incident declaration and escalation

A
27
Q

Executive summary

A
28
Q

Who, what, when, where, and why

A
29
Q

Recommendations

A
30
Q

Timeline

A
31
Q

Impact

A
32
Q

Scope

A
33
Q

Evidence

A
34
Q

Legal

A
35
Q

Public relations

A

Customer communication
Media

36
Q

Regulatory reporting

A
37
Q

Law enforcement

A
38
Q

Root cause analysis

A
39
Q

Lessons learned

A
40
Q

Metrics and KPIs

A
41
Q

Mean time to detect

A
42
Q

Mean time to respond

A
43
Q

Mean time to remediate

A
44
Q

Alert volume

A