LO6 Security & Protection Flashcards
1
Q
What are the three main principles of InfoSec?
A
Confidentiality.
Integrity.
Availability.
2
Q
Name the different risks to data?
A
Unauthorized Access to Data.
Accidental Loss of Data.
Intentional Destruction of Data.
Intentional Tampering with Data.
3
Q
Name the Impacts of a risk to data?
A
Loss of Intellectual Property
Loss of Service and Acess
Failure in Security of Confidential Information
Loss of Information belonging to a third party
Loss of reputation
The threat to National Security.
4
Q
Name Different Protection Policies
A
Staff Responsibilities: Let the staff know their roles within a data breach as well as providing data security techniques and should be trained to know how to adequately handle information. Disaster & Recovery Planning: Risks need to be analyzed. Staff Response. Recovery measures. Assessment and Effectiveness. Risks assessments and training drills should occur.
5
Q
Name 6 Physical Protection Methods
A
Flood Levels Lock & Keypads Biometrics Shredding Security Staff Backups
6
Q
Name 6 Logical Protection Methods
A
Password Protection Anti-malware Tiered Levels of Acess Firewall Encryption Obfuscation