Domain1 Flashcards
NIST 800-171
NIST 800-171 applies specifically to the use of controlled unclassified information (CUI).
Orchestration Tools
Orchestration tools are designed to manage workloads and seamlessly shift them between cloud service providers
FIPS 140-2
The Federal Information Processing Standard
FIPS 140-2, the Security Requirements for Cryptographic Modules. This guidance is specific to the cryptographic requirements of systems such as HSMs and would have the most directly relevant guidance
The FIPS 140 standard is used in designing, implementing, and operating cryptographic modules.
NIST 800-53
NIST 800-53 provides general cybersecurity standards for federal agencies,
NIST 800-171
NIST 800-171 applies specifically to the use of controlled unclassified information (CUI).
The common criteria
Common Criteria (CC) provide a certification process for hardware and software products.
The blockchain
The blockchain is technology that uses cryptography to create a distributed immutable ledger.
Accreditation
Accreditation is the act of management formally accepting an evaluating system, not evaluating the system itself.
ISO 17789
ISO 17789 provides a cloud reference architecture and does not offer specific security guidance.
ISO 27701
ISO 27701 provides control guidance for privacy programs
ISO 27001
ISO 27001 is an international standard for the creation of an information security management system (ISMS).
ISO 27001 is a general description of controls appropriate for a cybersecurity program,
ISO 27017
ISO 27017 provides guidance on the security controls that should be implemented by cloud service providers
NIST SP 800-37
NIST SP 800-37 is the Risk Management Framework created by the U.S. government for assessing the security of systems.