Class two Flashcards

1
Q

Governance

A

The methods used by an executive to keep their organization on track with management’s goals and within acceptable performance standards. Usually achieved through establishing policies, procedures, and controls that match the enterprise’s vision, strategy, and risk appetite.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Policy

A

1) high level statement of intent providing guidance on principles an organization follows. 2) Settings, including security settings, inside a software program or OS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Procedure

A

guidance or specific instruction on the process/method that should be used to achieve an objective.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

PAMS

A

Privileged account management system - used to control and monitor activities of privileged accounts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Red team

A

team of penetration testers that look for potential exploits in the system, infrastructure, or website.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Penetration test

A

method to identify potential vulnerabilities that could be exploited. Includes exploring how they could be exploited.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Vulnerability assessment

A

Finding and classifying security gaps. Not about exploring ways to exploit them. Often used by pen testers.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Zero day

A

First time malware or exploit is discovered, no procedures or tools available yet to deal with it.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Business continuity plans

A

BCP - describes how to restore critical products or services to customers should a substantial event cause disruption to them.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Technical disaster recovery plan

A

Actual processes, people, information, and assets required to put a digital system back in place within a timeline defined by the BCP.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

RITE

A

Responsibility, integrity, trust, ethicality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly