5.7 Compare and contrast types of control Flashcards

1
Q

Deterrent

A

The control may not physically or logically prevent access, but psychologically discourages an attacker from attempting an intrusion.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Preventive

A

The control physically or logically restricts unauthorized access. A directive can be thought of as an administrative version of a preventive control.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Detective

A

The control may not prevent or deter access, but it will identify and record any attempted or successful intrusion.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Compensating

A

The control does not prevent the attack but restores the function of the system through some other means, such as using data backup or an alternative site.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Technical

A

Controls implemented in operating systems, software, and security appliances. Examples include Access Control Lists (ACL) and Intrusion Detection Systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Administrative

A

Controls that determine the way people act, including policies, procedures, and guidance. For example, annual or regularly scheduled security scans and audits can check for compliance with security policies.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Physical

A

Controls such as alarms, gateways, and locks that deter access to premises and hardware are often classed separately.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly