CYBERSECURITY Coursera Specialization Flashcards

1
Q

The practice of ensuring confidentiality, integrity, and availability of information by protecting networks, devices, people, and data from unauthorized access or criminal exploitation

A

Cybersecurity (or security)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

The process of ensuring that assets stored in the cloud are properly configured and access to those assets is limited to authorized users

A

Cloud Security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

A current or former employee, external vendor, or trusted partner who poses a security risk

A

Internal threat

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

The practice of keeping an organization’s network infrastructure secure from unauthorized access

A

Network security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Any information used to infer an individual’s identity

A

Personally identifiable information (PII)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

A specific type of PII that falls under stricter handling guidelines

A

Sensitive personally identifiable information (SPII)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Skills that require knowledge of specific tools, procedures, and policies

A

Technical skills

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Any circumstance or event that can negatively impact assets

A

Threat

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Any person or group who presents a security risk

A

Threat actor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Skills from other areas that can apply to different careers

A

Transferable skills

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

: A technique that manipulates artificial intelligence (AI) and machine learning (ML) technology to conduct attacks more efficiently

A

Adversarial artificial intelligence (AI):

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

The process of verifying who someone is

A

Authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

A type of phishing attack where a threat actor impersonates a known source to obtain financial advantage

A

Business Email Compromise (BEC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Malicious code written to interfere with computer operations and cause damage to data and software

A

Computer virus

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

: An attack that affects secure forms of communication between a sender and the intended recipient

A

Cryptographic attack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

An attempt to access password secured devices, systems, networks, or data

A

Password attack

17
Q

Software designed to harm devices or networks

A

Malware

18
Q

Any person or group who uses computers to gain unauthorized access to data

A

Hacker

19
Q

An attack that targets systems, applications, hardware, and/or software to locate a vulnerability where malware can be deployed

A

Supply-chain attack

20
Q

A type of attack when a threat actor compromises a website frequently visited by a specific group of user

A

Watering hole attack

21
Q

The exploitation of electronic voice communication to obtain sensitive information or to impersonate a known source

A

Vishing

22
Q

An attack in which a threat actor strategically leaves a malware USB stick for an employee to find and install to unknowingly infect a network

A

USB baiting

23
Q

The use of digital communications to trick people into revealing sensitive data or deploying malicious software

A

Phishing

24
Q

A security incident that affects not only digital but also physical environments where the incident is deployed

A

Physical attack

25
Q

An attack in which a threat actor impersonates an employee, customer, or vendor to obtain unauthorized access to a physical location

A

Physical social engineering:

26
Q

: A manipulation technique that exploits human error to gain private information, access, or valuables

A

Social engineering:

27
Q

A type of attack where a threat actor collects detailed information about their target on social media sites before initiating the attack

A

Social media phishing

28
Q

A malicious email attack targeting a specific user or group of users, appearing to originate from a trusted source

A

Spear phishing