CIA Triad Flashcards

1
Q

is cybersecurity is subset of information security ?

A

Whether cyber security is a subset of information security (or vice versa), or if they’re the same thing, has been the source of much debate.
While information security and cyber security are used interchangeably, the two can play quite different roles.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

where cybersecurity focus

A

cyber security focuses exclusively on the technical and digital aspects of security.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

what is information security ?

A

information security is the practice of protecting information in both its physical and digital forms. Similar to cyber security, it involves preventing (or reducing the likelihood of) unauthorised access to, use of, and destruction of information, as well as unauthorised disclosure and disruption to access.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

infosec?

A

information security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Information system is

A

is an umbrella term that describes a system (or set of components and processes) used for collecting, creating, processing, storing and distributing information within an organisation. Everything from physical hard drives to your office manager can be components in an information system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

who protect information system

A

also fall under the protection of infosec

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Information security vs cyber security

A

infosec is focused on protecting the confidentiality, integrity and availability of data. This model, known as the CIA triad, often crosses over into cyber security. Unlike cyber security, however, infosec is also concerned with protecting information from environmental disasters and physical theft (paper documents, hard drives, etc.).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

infosec governed by ?

A

infosec is governed by nonrepudiation, authenticity and accountability.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Nonrepudiation ?

A

Nonrepudiation is a concept used to provide assurance that something is undeniably valid, or that some action cannot be denied.
n IT, logging can be used for nonrepudiation; showing for certain that an email was sent and received.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Authenticity?

A

Authenticity is verifying that a user is who they say they are and that information has travelled via trusted sources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Accountability ?

A

Accountability means you can trace the actions of your parcel to each entity it visited. The entities your parcel visits should be unique and authorised to handle your parcel as it makes its way through the network. If something goes wrong with your delivery, the post office will (or should) be able to follow its route and find out who’s accountable.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Laws

A

> DPR (EU)
Payment Card Industry Data Security Standard (PCI DSS)
Health Insurance Portability and Accountability Act (HIPAA)
Computer Misuse Act 1990 (UK)
Data Protection Act (UK)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly