4.0 Reporting and Communication Flashcards

1
Q

Vulnerabilities

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Affected hosts

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Risk score

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Mitigation

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Recurrence

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Prioritization

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Compliance reports

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Action plans

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Configuration management

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Patching

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Compensating controls

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Awareness, education, and training

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Memorandum of understanding (MOU)

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Service-level agreement (SLA)

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Organizational governance

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Business process interruption

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Degrading functionality

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Legacy systems

19
Q

Proprietary systems

20
Q

Metric and key performance indicators (KPIs)

21
Q

Trends

22
Q

Top 10

23
Q

Critical vulnerabilities and zero-days

25
Q

Stakeholder identification and communication

26
Q

Incident declaration and escalation

27
Q

Executive summary

28
Q

Who, what, when, where, and why

29
Q

Recommendations

30
Q

Timeline

31
Q

Impact

32
Q

Scope

33
Q

Evidence

34
Q

Legal

35
Q

Public relations

A

Customer communication
Media

36
Q

Regulatory reporting

37
Q

Law enforcement

38
Q

Root cause analysis

39
Q

Lessons learned

40
Q

Metrics and KPIs

41
Q

Mean time to detect

42
Q

Mean time to respond

43
Q

Mean time to remediate

44
Q

Alert volume