A1 M1 Flashcards

National Institute of Standards & Tech Frameworks

1
Q

List the 3 primary components of the NIST Cybersecurity Framework.

A

Core
Tiers
Organizational Profiles

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

NIST CSF Core

A

describes cybersecurity outcomes that can be used to reduce cybersecurity risks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

List the 6 functions of the CFS Core.

A

Govern
Identify
Protect
Detect
Respond
Recover

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Function that established, communicates, & monitors the organization’s cybersecurity risk management strategy, expectations, & policy (oversight of others)

A

Govern

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Function that focuses on understanding the assets & suppliers of an organization & the related cybersecurity risks

A

Identify

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Function that focuses on an organization’s ability to secure its assets to prevent or reduce the likelihood & impact of adverse cybersecurity events

A

Protect

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Function that focuses on the timely discovery of cybersecurity attacks & incidents

A

Detect

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Function that focuses on a company’s ability to contain the effects of cybersecurity incidents

A

Respond

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Function that focuses on supporting the timely restoration of a company’s normal operations to reduce the impact of cybersecurity incidents & communicate recovery efforts

A

Recover

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

A measure of an organization’s information security infrastructure sophistication

A

CSF Tiers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Determine success or failure of information security implementation

A

CSF Organizational Profiles

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

List the 4 CSF Tiers.

A

1 Partial
2 Risk-informed
3 Repeatable
4 Adaptive

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Profile that specifies the outcome that an organization is achieving based on current cybersecurity posture

A

Current

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Profile that specifies the desired outcome that an organization has prioritized achieving

A

Target

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Profiles that are baseline outcomes developed among a number of organizations due to the shared interest & goals of a particular industry, sector, topic, or use case

A

Community

How well did you know this?
1
Not at all
2
3
4
5
Perfectly