Insider Attacks in depth Flashcards
1
Q
General premises:
A
Insider Attacks are generally the most difficult sort of cyber attacks to defend against and they can be extremely harmful to a system, even more so than other types of attack.
Even w/ limited access to the information contained w/in a company, an employee is still on air w/in that internal network and can absolutely provide an attack vector for an intruder.
2
Q
Companies generally try to prevent Insider Attacks by:
A
1: Creating policies which restrict access
2: Logging, to know who accessed what at what point in time
3: Active monitoring of employees with elevated privileges
4: And they generally try to not have disgruntled employees