Cybersecurity Operational Components Flashcards

1
Q

What are some of the technology controls for Risk logs?

A
  • Risk management software
  • General tracking software
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are some of the process controls for Risk logs?

A
  • Regular log review
  • Update on-going risks
  • Clearly identified responsibilities
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are some technology controls for Risk responses?

A
  • Risk management software
  • Risk register
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are some process controls for Risk responses?

A
  • Enterprise Risk Management (ERM)
  • Positive risk culture
  • Risk treatment plan
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What’s the definition of Residual risk?

A

Risk that remains after identifying and responding to a risk.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are some technology controls for Metrics and reporting?

A
  • Data collection points
  • Monitoring systems
  • Data storage and access controls
  • Automated reporting tools
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are some process controls for Metrics and reporting?

A
  • Security audits
  • Risk assessments
  • Risk registers
  • Cost-risk analysis
How well did you know this?
1
Not at all
2
3
4
5
Perfectly