CompTIA Security+ Flashcards
What does CIA triad refer to ?
Confidentially
Integrity
What does NIST stand for?
National Institute of Standards and Technology
What are the 5 steps of NIST?
Identify - develop security policies and capabilities. Evaluate risks, threats and vulnerabilities and recommend security controls to mitigate them.
Protect - procure/develop, install, operate , and decommission IT hardware and software assets with security as an embedded requirement of every stage of this operation life cycle.
Detect - perform ongoing, proactive monitoring to ensure that controls are effective and capable of protecting against new types of threats.
Respond - identify, analyse, contain and eradicate threats to systems and data security.
Recover - implement cybersecurity resilience to restore systems and data if other controls are unable to prevent attacks
What is a security policy?
This is a formalized statement that defines how security will be implemented within an organisation.