Chapter 14 - Oversight and Operations Flashcards
What are the responsibilities of a SOC team?
-Proactive Monitoring
-Incident Response and Recovery
-Remediation Activities
-Compliance
-Coordination
What is ML?
Machine Learning - ML is a subset of AI - It uses statistical techniques to give computer systems the ability to learn or progressively improve their performance using data rather than being explicitly programmed. An ML system can then create a refined algorithm for the next iteration
What is Data Analytics?
Examines large data sets to draw conclusions - relies on human interaction to query data, identify trends, and test assumptions.
What is Compliance?
Process of ensuring that an organization adheres to laws and regulations related to information security and user data privacy
What is a Regulatory Agency?
An external governance body responsible for distribution and enforcing government directives
What are Security Groups?
In cloud computing, an automated function, like a virtual firewall, that allows control over all inbound and outbound traffic to a particular cloud resource.
What are Principles of good Governance?
Accountability, integrity, leadership, transparency, and stewardship
What is External Compliance Monitoring?
Performed by a third party, they examine the protections set by the organization and create an external compliance report
What is Verification of Truth and Authenticity?
The external compliance reports that server as an “Official Attestation” created by external compliance monitoring
What are Procedures?
Detailed mandatory steps that a user needs to follow to comply with a policy
What are Policies?
A set of management statements that defines an organization’s philosophy of how to safeguard its information
What are Standards?
specifies the uniform uses of specific technologies or settings for secure configurations
What is User Automation Provisioning?
Automatically grants and manages users’ access to the systems, applications and resources based on their positions
What is Resource Automation Provisioning?
What is SOAR?
Security Orchestration Automation R…. -
What is the Controller?
What is the Owner?
The person responsible for the information, determine the level of security needed for the data and delegates security duties as required
What is Governance?
It is the structures, systems, and practices put in place to assign, oversee, and report.
What are the challenges associated with AI in cybersecurity?
Malicious actor could try to alter the training data used by ML, attackers can use AI to develop mutating malware