A - GLOSSARY Flashcards
Acceptable interruption window
The maximum period of time that a system can be unavailable before compromising the achievement of the organization’s business objectives
Acceptable use policy
A policy that establishes an agreement between users and the organization and defines for all parties the ranges of use that are approved before gaining access to a network or the Internet
Access Controls
The processes, rules and deployment mechanisms that control access to information systems, resources and physical access to premises
Access path
The logical route that an end user takes to access computerized information. Typically it includes a route through the operating system, telecommunications software, selected application software and the access
control system.
Access Rights
The permission or privileges granted to users, programs or workstations to create, change, delete or view data and files within a system, as defined by rules established by data owners and the information security policy
Accountability
The ability to map a given activity or event back to the responsible party
Address Resolution Protocol (ARP)
Defines the exchanges between network interfaces connected to an Ethernet media segment in order to map an IP address to a link layer address on demand
Administrative control
The rules, procedures and practices dealing with operational effectiveness, efficiency and adherence to regulations and management policies
Advance encryption standard (AES)
The international encryption standard that replaced 3DES
Alert situation
The point in an emergency procedure when the elapsed time passes a threshold and the interruption is not resolved. The organization entering into an alert situation initiates a series of escalation steps.
Algorithm
A finite set of step-by-step instructions for a problem-solving or computation procedure, especially one that can be implemented by a computer
Alternate facilities
Locations and infrastructures from which emergency or backup processes are executed, when the main premises are unavailable or destroyed. This includes other buildings, offices or data processing centers.
Alternate process
Automatic or manual process designed and established to continue critical business processes from point-of-failure to return-to-normal
Annual loss expectancy (ALE)
The total expected loss divided by the number of years in the forecast period yielding the average annual loss
Anomaly detection
Detection on the basis of whether the system activity matches that defined as abnormal