Chapter 2 - Understanding Security Policies Using a Lifestyle Approach Flashcards

1
Q

Secure Network Lifecycle - Initiation

A

Preliminary risk assessment and categorizing of risk (low, medium, high).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Secure Network Lifecycle - Acquisition and Development

A

Detailed risk assessment, acquiring the products and tools needed to reduce risk.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Secure Network Lifecycle - Implementation

A

When you put countermeasuers in place on the production network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Secure Network Lifecycle - Operations & Maintenance

A

Monitoring and care for network security devices. Also includes incident handling.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Secure Network Lifecycle - Disposition

A

Getting rid of network equipment (including formatting / destroying media storage devices).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is Qualitative risk analysis?

A

Data is gathered by an individual to determine an asset’s value, it’s vulnerabilities, potential threats, and the impact or risk based on those factors.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is Quantitative risk analysis?

A

Uses raw data, numbers, and statistics to determine risk.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the primary reasons for documenting the value of an asset, in combination with the vulnerabilities of that asset?

A

To identify risk, and possible countermeasures.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Who is ultimately responsible for the data and security on the network?

A

Senior Management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What kind of policy does the senior executive team create?

A

Governing policy (high-level security policy)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the 5 steps to Cisco’s Secure Network Lifecycle?

A
  1. Initiation
  2. Acquisition and development
  3. Implementation
  4. Operations and maintenance
  5. Disposition
How well did you know this?
1
Not at all
2
3
4
5
Perfectly