Network Security Terminology Flashcards

1
Q

Asset

A

A person, device, location, or information that SecOps aims to protect from attack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Attack

A

An action taken by a threat that exploits a vulnerability that attmpts to block authorized access to an asset, or to gain unauthorized access to an asset

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Risk

A

The potential of a threat to exploit a vulnerability via an attack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

SecOps

A
  • abbreviation for IT security operations
  • a discipline within IT responsible for protecting assets by reducing the risk of attacks
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Threat

A

Something or someone that can explot a vulnerability to attack an asset

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Vulnerability

A

A weakness in software, hardware, facilities, or humans that can be exploited by a threat

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Red team

A

attempts to compromise the security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Blue team

A

defends against the red team’s attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

white team

A

neutral team that observes

may server as referee

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

purple team

A
  • Red and blue tema engage, and then when certain criteria are met, the teams debrief, cross-train each other and repeat
  • also known the iterate and improve model
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

White hat

A

IT professionals who specialize in penetrating or compromising network security, but only to help an organization improve its security posture.

Only performs attacks when authorized to do so

Remain in compliance with any and all laws governing such behavior

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Black hat

A
  • May or may not be IT professionals, but possess the knowledge and will to reach systems for profit.
  • Profit may be monetary, “street credibility”, or just a source of entertainment
  • Black hats do not ask permission and are not interested in helping their targets
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Gray hat

A
  • Group of people who may or may not be IT professionals
  • May or may not choose to break laws in pursuit of their hacking goals
  • Unlike Black Hats, have no malicious intent in their actions
  • Unlike White hats, they may not have obtained permission to perform the attack
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

CIA Triad

A
  • Confidentiality
  • Integrity
  • Availability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Confidentiality

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly