Chapter 2: Asset Security Flashcards
What is UBA ?
User Behavior Analytics
What is UEBA ?
User and Entity Behavior Analytics
What’s a VMS ?
Vendor Management System
What is Compliance ?
The act of confirming to or adhering to rules, policies, regulations, standards or requirements.
What is PCI DSS ?
Payment Card Industry Data Security Standard
What is HIPAA ?
Health Insurance Portability and Accountability Act
What does SOX stands for?
Sarbanes-Oxley Act of 2002
What does GDPR stand for?
General Data Protection Regulation
What is the goal of Risk Management?
Reduce Risk to an acceptable level.
Define Asset
Anything used in a business process or task.
What is AV ?
Asset Value
Define Threat
Any potential occurrence that may cause an undesirable or unwanted outcome for an organization or specific asset.
What is EF ?
Exposure Factor
Formula - - Risk = ??
Threat * Vulnerability
What is covered by NIST 800-30r1 Appendices D & E ?
Threat Sources & Threat Events