LO1 Flashcards
What is meant by cyber security
Technologies, processes and practices used to protect networks, programs, computer systems and data from being attacked, damaged and prevent unauthorised access
What is integrity
Ensuring data is kept upto date, accurate, fit for its intended purpose and trustworthy
What is confidentiality
Ensuring data is only accessible to those who are authorised to do the data
What is availability
Ensuring data is made avaliable for those who are authorised when the data is required
What is GDPR
General data protection regulation, protects the privacy of data for people in the EU that is processed by organisations and stored on computers
6 Principles of GDPR
Data must be collected lawfully
Data must be used only for reasons specified
Data must be relevant and not excessive
Data must be up to date/ Accurate
Data must be secured securely
Data must not be stored longer than required
Name types of cyber security incidents
Unauthorised access Information disclosure Inaccessible data Destruction Theft
What is unauthorised access and what types of unauthorised access is there
Gaining access to computer systems, networks and data without permission
- Hacking
- Escalation of privileges
What is hacking
Illegally using a computer to access information stored on another computer
What is escalation of privileges and the two forms of it
obtaining rights to access and edit information that normal users do not normally have
- Horizontal
- Vertical
What is vertical escalation of privileges
Finding flaws in the security system/ operating system to increase levels of unauthorised access
What is horizontal escalation of privileges
Gaining access to other users areas by stealing their username and passwords
What is information discourse
Information passed to another person, organisation without permission from the owner
What is inaccessible data and the two examples of inaccessible data
Data that is not available to those with authorisation
- Account lockout
- denial of service
What is account lock out
account is locked due to many failed log in attempts