Domain 1 Flashcards
What are the three categories of controls?
Managerial, Operational, Technical
Managerial controls include security training, Operational controls are executed by people (e.g., backup media, facility design), and Technical controls involve technology.
What is the purpose of Preventive Controls?
To prevent incidents
Examples of Preventive Controls include locks and guards.
What do Detective Controls do?
Identify unauthorized behaviors
Detective Controls help in monitoring and alerting to security breaches.
What are Compensating Controls?
Satisfy security requirements when primary controls are impractical
These controls serve as alternative measures to maintain security.
Fill in the blank: _______ controls are executed by people.
Operational controls
Operational controls involve actions taken by individuals to maintain security.
True or False: Technical controls involve human intervention.
False
Technical controls involve technology rather than human intervention.
What is an example of a Preventive Control?
Locks, guards
Preventive Controls are designed to deter security incidents before they occur.
What is the primary function of Detective Controls?
To identify unauthorized behaviors
Detective Controls are crucial for monitoring and responding to security threats.
Fill in the blank: _______ controls are used when primary controls are impractical.
Compensating controls
Compensating controls provide alternative solutions to meet security requirements.