ISC S1 Flashcards
What is the definition of Control 1: Inventory and Control of Enterprise Assets?
Infrastructure enterprise asset monitoring.
What is the definition of Control 2: Inventory and control of Software assets?
Allow authorized software.
What is the definition of Control 3: Data Protection?
Data disposal.
What is the definition of Control 4: Secure Configuration of Assets and Software?
Secure configuation.
What is the definition of Control 5: Account Management?
Authorization for credentials.
What is the definition of Control 6: Access Control Management?.
Manage access credentials.
What is the definition of Control 7: Continuous Vulnerability Management?
Identify & track vulnerabilities/weak points.
What is the definition of Control 8: Audit Log Management?
Recover from attacks.
What is the definition of Control 9: Email and Web Browser Protection?
Protect & detect from Email and Web.
What is the definition of Control 10: Malware Defense?
Prevent or control bad software.
What is the definition of Control 11: Data Recovery?
Restore data pre-incident.
What is the definition of Control 12: Network Infrastructure Management?
Prevent attacks in vulnerable points.
What is the definition of Control 13: Network Monitoring and Defense?
Establish defense as security measure.
What is the definition of Control 14: Security Awareness and Skill Training?
Security mindset.
What is the definition of Control 15: Service Provider Management?
Competency in service providers.