Asset management Flashcards
Asset management
Track licenses, verify all devices are up to date, keep eye on most valuable assets, respond faster to a security problem – know where a device is, what the device is, who its assigned to.
IDS/IPS
Can notify if a file has been moved or modified.
File integrity check
OS’s can perform an integtriy check, if changed, it can identify and repair the modified files. Windows tool = SFC.
Host based FW
Prevent anyone accessing your device or prevent an app from accessing an external network.
Application whitelisting
Definition-
Path-
Network zone-
unique identifier such as a hash, a certificate from certain publishers.
Path = only run applications in these folders.
Network zone = apps can only run in this network zone.(PCI DSS zone/DMZ).
Removeable media control
Windows event log shows USB media use, log filenames copied to usb drives, show who is using the usb.
UTM/Web sec gateway is a?
All in one security app
Data execution prevention
Windows event log shows USB media use, log filenames copied to usb drives, show who is using the usb.
WAF
Views conversation between a web client and web server. Blocks against SQL Injection. Most used in PCI DSS environments. Allow or deny traffic based on expected input, not expected input is blocked due to being potentially malicious.