Chapter 4 Key Concepts and Terms Flashcards
PMBOK
Project Management Body of Knowledge
PMI
Project Management Institute
risk methodology
a description of how you will manage risk
Recovery point objective (RPO)
the maximum amount of
data loss that is acceptable
Recovery time objective (RTO)
the maximum allowable time
to recover the function
Business recovery requirement
identify any other business
functions that must already be in place for the specified recovery function to occur
Technical recovery requirements
the technical
prerequisites that are needed to support each critical business function.
business continuity plan (BCP)
a written plan for a structured response to any events
that result in an interruption to critical business activities or functions.
disaster recovery plan (DRP)
the actions necessary to recover resources after a di
saster
threat analysis
identifying and documenting threats to critical resources.
security gap
The difference between the security controls
you have in place and the controls you need in order to address all vulnerabilities
security policy
a risk-mitigating
definition or solution for your organization
gap analysis
a comparison of the security controls you have in place and the controls you need in order to address all identified
threat
Gramm-Leach-Bliley Act (GLBA)
GLBA addresses information security concerns in the
financial industry
The Family Education Rights and Privacy Act (FERPA)
This federal law protects
the privacy of student education records
The USA Patriot Act of 2001
expanded the authority of U.S. law enforcement agencies to enable them to fight terrorism in the United States and abroad
Children’s Online Privacy Protection Act of 1998 (COPPA)
restricts how online information is collected from children under 13 years of age.
privacy policy
what an organization does with the data it collects about you and why it collects those data
accounting
recording events in log files.
Mobility
allows remote workers and employees
to be connected to the IT infrastructure in almost real-time.
mobile device management (MDM)
a software application that allows organizations to monitor, control,
data wipe, or data delete business data from a personally owned device)