Chapter 1 Flashcards
What happened in the 1960s?
Advanced Research Project Agency (ARPA) began to examine feasibility of redundant networked communications.
Larry Roberts developed ARPANET from its inception.
What happened in 1970s and 80s?
ARPANET grew in popularity as did its potential misuse.
Problems with ARPANET security occurred.
* No safety procedures for dial-up connections.
* Nonexistent user identification and authorization system.
Late 1970s: microprocessor expanded computer capabilities and security threats.
MULTICS
Multiplexed Information and Computing Service
An early OS that computer security concepts were first tested on. It had security built in - Ken Thompson & Dennis Richie came from this project
The 1990s.?
Networks of computers became more common; so too did the need to interconnect networks.
Security was a low priority.
2000 to present?
Millions of computer networks, many unsecured.
Growing threat of cyber attacks.
Layers of security?
Physical Personal Operations Communications network Information
Define CIA triangle?
Confidentiality - privacy.
Integrity - consistency, accuracy of data.
Availability - maintaining all hardware.
What is threat?
A collective of objects or persons that threaten an asset.
What is a threat agent?
A specific instance of a threat - a single virus.
Critical Characteristics of information.
Availability, accuracy, authenticity, confidentiality, integrity, possession.
Components of an Information Security?
Software, hardware, data,
people, procedures, networks.
Balancing IS and Acess
Must allow reasonable access, yet protect against threats.
Bottom-Up approach vs Top-Down approach.
Bottom-Up approach- operational staff initiate the process then propagate their findings upward to management as proposed policy recommendations.
Top-Down approach - the management understands the seriousness and initiates the process, which is then systematically percolated down to operations staff.
Phases of Development Life-Cycle
Phase 1: Investigation Phase 2: Analysis Phase 3: Logical Design Phase 4: Physical Design Phase 5: Implementation Phase 6: Maintenance and change
What is CIO?
Chief Information Officer,
advising senior executive on strategic planning.