Domain 2 - Asset Security Flashcards

1
Q

What is the purpose of classification?

A

To ensure that information/assets are marked in such a way that only those with an appropriate level of clearance can have access to them.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is categorization?

A

The process of determining the impact of the loss of confidentiality, integrity, or availability of the information/assets to an organization.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Define Quality Control (QC)

A

Based on INTERNAL standards established to control and monitor quality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Define Quality Assurance (QA)

A

Based on EXTERNAL standards and involves reviewing activities and processes to ensure final products meet standards of quality.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is a ‘data owner’?

A

MASTER of all

Understand the replacement cost of the info
Determine who has a need for the data
Identify when data needs to be destroyed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a ‘data processer’?

A

MANAGER of all (on behalf of the data owner)

Ensure accessibility
Ensure ongoing integrity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Clearing vs Purging data?

A

Clearing is the removal of sensitive info so that it can’t be reconstructed using NORMAL system functions or techniques

Purging is the removed of sensitive data with the intent that the data cannot be reconstructed by ANY KNOWN technique

How well did you know this?
1
Not at all
2
3
4
5
Perfectly