Frameworks, Standards, and Models Flashcards
1
Q
ISO 27005
A
Risk Management Framework
2
Q
ISO 15288
A
Systems engineering standard covering processes and life cycle stages
3
Q
ISO 15408
A
Common Criteria
4
Q
ISO 27002
A
Framework for security controls
5
Q
ISO 27001
A
Standard for ISMS
6
Q
COBIT
A
IT Security Best Practices
7
Q
Fraud Prevention Framework
A
COSO
8
Q
COSO
A
Risk Management controls framework
9
Q
COBIT 5
A
5 key principles for governance and management of enterprise IT
10
Q
ISO 9000 series
A
Quality management techniques
11
Q
SOC 1
A
Internal controls over financial reporting
12
Q
SOC 2
A
Technical assessment
13
Q
SOC 2 evaluates
A
CIA
Privacy
Security
14
Q
Which SOC report is public?
A
SOC 3
15
Q
SOC 2 Type 1
A
Evaluates design of security controls at a point in time