Chapter 2: Asset Security Flashcards
What is an asset?
An asset is anything of worth to an organization.
This includes people, partners, equipment, facilities, reputation, and information
What CRM stands for?
Customer Relationship Management (CRM)
How can we divide the life of information?
Acquisition, use, archival, and disposal.
What is the different between Backup and Archive?
A data backup is a copy of a data set currently in use that is made for the purpose of recovering from the loss of the original data.
A data archive is a copy of a data set that is no longer in use, but is kept in case it is needed at some future point
What is sensitivity of the information?
The sensitivity of information is commensurate with the losses to an organization if that information was revealed to unauthorized individuals.
What is Critical Information?
Critical information is that which is essential for the organization to continue operations.
What are the common levels of sensitivity from the highest to the lowest for commercial business?
Confidential
Private
Sensitive
Public
What are the levels of sensitivity from the highest to the lowest for military purposes?
Top secret Secret Confidential Sensitive but unclassified Unclassified
What are the Layers of Responsibility?
Senior management, Functional management and Operational management
What is the difference between Privacy and Security?
Privacy indicates the amount of control an individual should be able to have and expect to have as it relates to the release of their own sensitive information.
Security refers to the mechanisms that can be put into place to provide this level of control.
What is the responsibility of the data custodian?
The data custodian (information custodian) is responsible for maintaining and protecting the data.
Three core retention policy questions
What data do we keep?
How long do we keep this data?
Where do we keep this data?
What is E-discovery?
Discovery of electronically stored information (ESI), or e-discovery,
What are the process of Electronic Discovery Reference Model (EDRM)?
Identification Preservation Collection Processing Review Analysis Production Presentation