Chapter 3 Flashcards
COMPENSATING CONTROL
Alternative counter-measures to minimize risk.
THE TJX COMPANIES, INC.
The detailed recording, management, and updating regarding the details of an information system.
GAP ANALYSIS
A comparison between the actual and desired outcome.
IDENTITY THEFT
The taking of one’s personal information for unauthorized use.
LAN DOMAIN
An IT domain that comprises the equipment making up the local area network.
LAN-TO-WAN DOMAIN
An IT domain that bridges between the LAN and the WAN.
PRIVACY MANAGEMENT
The rights and obligations of individuals and organizations in regard to how they manage personal information.
PRIVACY OFFICER
Senior-level management position within an organization with responsibiility for privacy laws and the impact to the organization.
REMOTE ACCESS DOMAIN
An IT domain that covers the access infrastructure for users accessing remote systems.
RISK ASSESSMENT
An analysis of threats and vulnerabilites against assets. This allows risks to be prioritized.
SOCIAL ENGINEERING
An act of manipulating people into divulging information.
SYSTEM/APPLICATION DOMAIN
An IT domain that covers network systems, applications, and software for users.
USER DOMAIN
An IT domain that covers the end users of information systems.
WAN DOMAIN
A network covering a large area often connecting multiple LANs.
WORKSTATION DOMAIN
The operating environment of an end user.