Assets, Threats and vulnerabilities Flashcards

1
Q

Asset:

A

An item perceived as having value to an organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Asset classification:

A

The practice of labeling assets based on sensitivity and importance to an organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Asset inventory:

A

A catalog of assets that need to be protected

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Asset management:

A

The process of tracking assets and the risks that affect them

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Compliance:

A

The process of adhering to internal standards and external regulations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Data:

A

Information that is translated, processed, or stored by a computer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Data at rest:

A

Data not currently being accessed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Data in transit:

A

Data traveling from one point to another

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Data in use:

A

Data being accessed by one or more users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Information security (InfoSec):

A

The practice of keeping data in all states away from unauthorized users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF):

A

A voluntary framework that consists of standards, guidelines, and best practices to manage cybersecurity risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Policy:

A

A set of rules that reduce risk and protect information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Procedures:

A

Step-by-step instructions to perform a specific security task

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Regulations:

A

Rules set by a government or other authority to control the way something is done

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Risk:

A

Anything that can impact confidentiality, integrity, or availability of an asset

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Standards:

A

References that inform how to set policies

16
Q

Threat:

A

Any circumstance or event that can negatively impact assets

17
Q

Vulnerability:

A

A weakness that can be exploited by a threat

18
Q

cloud security

A

An on-demand, massively scalable service, hosted on shared infrastructure, accessible via the internet.”