Chapter 1 Flashcards

1
Q

PII is an abbreviation for what?

A

Personally identifiable information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

List examples of Personally identifiable information.

A
  1. ) Name
  2. ) Social security number
  3. ) Birthdate
  4. ) Credit card numbers
  5. ) Bank account numbers
  6. ) Government issued ID
  7. ) Address information (street, email, phone numbers)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

PHI is an abbreviation for what?

A

Protected Health Information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

List examples of Protected Health Information.

A
  1. ) Diagnoses
  2. ) Treatment information
  3. ) Medical test results
  4. ) Prescription information
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the three elements of a Security Operations Center (SOC)?

A
  1. ) People
  2. ) Technology
  3. ) Process
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

In a SOC, a manager will oversee this levels. Name the three tiers

A
  1. ) Tier 1 - Alert Analyst
  2. ) Tier 2 - Incident Responder
  3. ) Tier 3 - Subject Matter Expert (SME)/Hunter
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Name 3 tasks that a Tier 1 analyst does?

A
  1. ) Monitors Incidents
  2. ) Opens tickets
  3. ) Basic Threat Mitigation
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Name 2 tasks that a Tier 2 analyst does?

A
  1. ) Deep investigation

2. ) Advises remediation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Name 3 tasks that a Tier 3 analyst does?

A
  1. ) In-depth knowledge
  2. ) Threat hunting
  3. ) Preventative measures
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

SIEM is an abbreviation for what?

A

Security Information and Event Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What type of information is captured by a SIEM?

A
  1. ) Network Traffic
  2. ) Network flows
  3. ) System logs
  4. ) Endpoint data
  5. ) Security Events
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

In terms of availability, what is meant by the term “five nines”?

A
  1. ) This means an uptime of 99.999%.

2. ) Over the course of the year, only 5.256 minutes of downtime is allowed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly