Exam 1 Flashcards
What is cybersecurity?
Protection of networked system and data from unauthorized use or harm
offline identity is?
your identity that interacts on a regular basis at home, school or work
Online identity is?
Your identity while you are in cyberspace
your data is?
medical records, education recors and emplyment and financial records
how to the criminals get your money?
online credentials and creative schemes
goals of cybersecurity?
confidentiallity, integrity and availability
ruined reputation, vandalism, theft, revenue lost and damaged intellectual property are
impacts of a security breach
who is the most dangerous attacker
script kiddies
what is the most common type of security attacks?
internal security attacks
what is cyberwarfare
use to gain advantage over adversaries, nations or competitors
what is risk managment
A process aiming at an efficient balance between realizing opportunities for gains while minimizing vulnerabilities and losses
What it is for and the focus of OCTAVE
A risk based stategic assessment and planning technique for security and is focused on strategic, and practice related issues
SP-800-30 NIS Explain what is for and its focus
Is a guide for conducting risk assessments of federal information systems and organizations and is focus is to provide senior leaders with the information needed to determine appropiate courses of action in response to identified risks
explain the difference between qualitative and cuantitative risk managment
qualitative risk does not analyze the risks mathematically to identify the probability meanwhile quantitative uses probability to characterize the risk probability and impact
what are the steps for cuantitative risk managment
Determine the asset value, identify threats to the asset, determine the exposure factor, calculate the single loss expectancy, calculate the annualized rate of occurance and calculate the annualized loss expectancy