Chapter 3 Endpoint Security Flashcards

1
Q

What is change management?

A

The process of ensuring an organization follows a standard process for requesting, reviewing, approving, and implementing changes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is an RFC in change management?

A

A Request for Change is a description, explanation, risk assessment, impact, roll back plan, scope, schedule, and affected items for a change

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a CAB in change management?

A

A Change Advisory Board is a group in an organization that approves or denies major changes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What authority approves or denies minor changes in a RFCs? Major Changes?

A

Minor changes can be approved by a manager.

Major changes can be approved by a CAB (Change Advisory Board)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are routine changes?

A

Routine changes are pre approved changes in the change management system. They still require an RFC, but the RFC is immediately approved.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is versioning in change management?

A

Versioning assigns each release of software an incrementing number used to identify update versions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are ICS systems?

A

A Industrial Control System are devices that control industrial production and operations. Systems include energy infrastructures, manufacturing plants, industrial facilities, logistics operations, and other critical infrastructures.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the three ICS types?

A

SCADA (Supervisory Control And Data Acquisition), DCSs (Distributed Control Systems), and PLCs (Programmable Logic Controllers)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are SCADA systems?

A

SCADA (Supervisory Control And Data Acquisition) systems are control systems that require remote monitoring and management of their infrastructure and production systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are telemetry units?

A

Individual remote sensors commonly used in SCADA systems that provide reports back to the central collection system and has some local control. The central system uses the reports to adjust the production or control systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Why and how are SCADA systems vulnerable and often targeted?

A

Most ICS manufacturers recommend not updating or patching sensors and control devices since these systems must continuously operate and provide stability. Attacks on SCADA systems target the feedback from telemetry units, or the local sensor and control unit, to provide incorrect information. This causes the central data control system to falsely adjust production or control systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are DCSs mainly used in?

A

Distributed Control Systems are frequently used to control water and wastewater treatment and distribution systems, power plants, refineries, and production lines.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are PLCs?

A

Programmable Logic Controllers are systems designed to handle difficult environments with special temperature, vibration, or other requirements while still functioning. PLCs will not have a monitor or other interfaces beyond buttons or lights.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly