NIST 800-61r2 Flashcards
1
Q
Which phase do you use search engines?
A
Detection and analysis
2
Q
Identifying attacking host?
A
Containment, Eradication, and Recovery
3
Q
Perform event correlation?
A
Detection and analysis
4
Q
Pre-cursor of an incident
A
Threatening behavior, port scan, recon
5
Q
C2M2
A
Cybersecurity Capability Maturity Model
6
Q
C2M2 Decision Makers
A
Executive who control allocation of resources and the management of risk. Senior Leaders.
7
Q
C2M2 Leaders
A
Managing org resources and ops
8
Q
C2M2 Practitioners
A
Support org in use of C2M2 Model (Planning and managing changes in org)
9
Q
C2M2 Facilitators
A
Responsible for leading self-eval of the org and analyzing results