DATA Protection Flashcards

1
Q

What is data protection?

A

Safeguarding intel from corruption compromise or lost.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is data classification?

A

Based on value on the org and how sensitive the info is.
Data owner is the one that determines this level.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Public Data

A

Has no impact due to being open source to everyone.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Sensitive Data

A

Has minimal impact like org finance data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Private Data

A

Personal record salary etc within the organization.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Confidential Data

A

Trade secrets, source code can really affect the business if released.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Critical Data

A

Very valuable like credit card numbers it is very important to not have this release.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Sensitive but unclassified

A

Would hurt national security people but rather the people that is in the org.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Confidential

A

Data that could harm the goverment if it gets realsed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Secret

A

Damage in national security knowing deployments etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Top Secret

A

Blue prints for weapons or etc that can harm alot of people and places.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Data Owenership

A

Process of who is responsible for the C.I.A OF the intel.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Data Owner

A

Senior exec role, maintains CIA of the asset.Makes the rules on how to control things.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Data Controller

A

Hold responsibility for deciding the purposes and methods of data storage collection and usage. Accountable for any breaches

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Data Processor

A

Group or indiviudal hired by data controller. Help with task to store analayze data sup by controller.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Data Steward

A

Works for the data owner, making sure everything is classified correctly.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Data Custodian

A

Enforces access controls. SYSadmin follow the requriments of owner.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Privacy Officer

A

Incharge of PII phi etc. Oversights it and will be on the hook if a breach happens.Do legal work on following protocols.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Data at rest

A

Any data that is stored in databases file systems and storage does not move. Threat actors want to get this.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Full disk encryption

A

Encrypts the entire hard drive.

21
Q

Partition Encryptuon

A

Encrypts partitions of a hard drive leaving other unencrypted

22
Q

File Encryption

A

Encrypting indivual files when needed to be secured.

23
Q

Volume encryption

A

Encrtyps set of slected files or directiores.

24
Q

Database Encryption

A

Encrypts data stored in data base

25
Q

Record Encryption

A

Specificl files within a data baseD

26
Q

Data in trasit

A

Data moving from one location to another.
SSL & TLS
VPNS
IPSEC

27
Q

SSL & TLS

A

cryptographic protocols designed to provide secure communication over computer network.Web browsing emails etc

28
Q

VPN

A

Creats secure connection over a less secure network.

29
Q

IPSEC

A

Used to secure IP communication by authentication and encrypting each ip packet in a data stream.

30
Q

Regulated Data

A

Control by laws regulation or industry starndards.

30
Q

DATA IN USE

A

Data actively being processed.

31
Q

TRADE SECRETS

A

BUSINESS INFO THAT provides company with a competitive edge.

32
Q

Intellectual Property

A

Creations by the mind covered by patents trademarks etc.

33
Q

Legal Info

A

Data related to legal proceedings.

34
Q

Financial Info

A

Data realted to an org financial transaction,sales invoices etc.

35
Q

Data Soverignty

A

Digital info is subject to laws of the country in which it is located.

36
Q

GDPR

A

GENERAL DATA PROTECTION REGULATION.

37
Q

Masking

A

Replacing some or all data in field with a place holder to conceal the data.

38
Q

DLP

A

Data loss prevention, set up to monitor data in system while in use transit or rest.

39
Q

Endpoint DLP SYSTEM

A

Piece of software in workstation or laptop that is going to monitor data that is in use of the computer.If a file transfer happens it will stop or do an alert like a IDS IPS can be set for detection or prevention moce

40
Q

Network DLP system

A

Checks the data going in and out for the network.

41
Q

Storage DLP

A

Software installed on server in data center and inspects the data while in the server.

42
Q

Cloud Based DLP

A

Is a SaAs is apart of the cloud service and storage needs.

43
Q

DATA IN FLUX

A

The three recognized states of data in the context of data security are data at rest (data that is stored), data in use (data that is currently being processed), and data in transit (data that is being transferred from one location to another). “Data in flux” is not a recognized state of data.

44
Q
A
45
Q
A
46
Q
A
47
Q
A