Domain 1 set 5 Flashcards
Wassenaar Agreement
Export Restriction
No exporting strong encryption or bombs
ARO
Annual Rate Of Occurrence
How often the threat is expected
EF
Exposure Factor
the % of loss that is expected from an risk event
Asset Value X Exposure Factor = ?
SLE
GLBA
Gramm -Leach - Bailey Act
Covers Financial institutions
HIPAA
Health Insurance Portability and Accountability Act
Typosquatting
URL Hijacking
Cybersquatting
domain squatting
STRIDE
Is a Threat categorization scheme from Microsoft
spoofing tampering repudiation info disclosure DOS attack Elevation of privilege
The First step of a BCP should perform?
(BOA) Business Organization Analysis
SOX
Sarbanes - Oxlet Act of 2002
Publicly traded companies have regulation on financial reports
Software code is a threat to what CIA
Availability
Code injection is a threat to what CIA
Integrity
Keylogger is a threat to what CIA
Confidentiality
4 CIA Confidentiality threats
- Attacks on Encryption
- Social Engineering
- Key Logger
- IOT internet of Things