Domain 2 Flashcards
Incident Response, Business Continuity, & Disaster Recovery Concepts
Adverse Events
events with negative consequences
Breach
when an entity who is unauthorized accesses PII
Business Continuity
actions, processes, & tools for ensuring organization can continue critical operations
Business Continuity Plan
documentation of predetermined instructions/procedures to ensure Business Continuity
Business Impact Analysis
analysis of IS requirements, function, & interdependencies to determine continuity requirements
Disaster Recovery
in IS terms, necessary actions to restore IT/communications to a company (follows after Incident Response/Handling)
Disaster Recovery Plan
processes, policy, and procedures for recovery/continuity
Event
observable occurrence in a network/system
Exploit
particular attack that attacks specific vulnerabilities
Incident
event that (actually/potentially) jeopardizes CIA of a IS or data within IS
Incident Handling/Response
process of detecting/analyzing incidents to limit its effect
Incident Response Plan
documentation of predetermined set of instructions/procedures to respond to/limit effects of malicious cyberattack
Instrusion
unauthorized access to system/system resource
SOC
Security Operations Center. Information security team that monitors, detects, and analyzing events to prevent/resolve issues before disruptions
Vulnerability
weakness in IS, security procedures, internal controls, or implementation that can be exploited/triggered
Zero Day
previously unknown system vulnerability with potential of exploitation without detection/prevention because it does not fit recognized patterns, signatures, or methods (tech equivalent of “Patient 0”)