Phase 4 Flashcards
What are the default windows event logs?
System, security, application
Which default windows tool is used to view windows logs?
Event viewer
What is the default location for log files in Linux?
/var/log
In addition to event files (*evtx), in which formats can you save windows logs?
Xml(.xml), text(.txt), comma separated value (*.csv)
Which two products were combined to create a SIEM?
Security event manager, security information manager
What is the default port for communications with elasticsearch?
9200
What is the default port for communications with kibana?
5601
Which operational level do cyber professionals generally think at from three discussed in this lecture (introduction to strategy?
Tactical
Which component of the log stash pipeline is closest to the raw data?
Input
Filters
Elastic search
Output
Input
What level requires communication of a plan and organizational buy-in of the strategy?
Strategic
What is the default port utilized by log stash to communicate with elastic search ?
9200
At which level is the vision of the organization laid out?
Strategic
After installing filebeats on a server to pull the syslog files, what port needs to be configured for communications on the log stash server, by default?
5443
Strategy is: (5 things)
Built with consideration of the threat
Planned
Built upon experience
Holistic
The efficient use of resources
What does the filter component accomplish in the log stash pipeline?
Allows customization of the search criteria used by kibana when pulling data from elastic search
Does the national security strategy discuss tactics? ( true or false)
False
all elastic stack components must be installed on the same server, true or false?
False
Strategic leaders must balance and prioritize risk? True or false
True
Which elastic stack component creates data visualizations?
Kibana
What are the “must haves” for organizational strategy? 4 things
Vision
Practice
Include all sectors
Consider all levels
Using the layered security model which tool is used at every layer?
SIEM
Strategy is not : (3 choices)
Leadership
Benchmarking
Best practices
How many pillars does the us 2017 national security strategy have?
4
Who would find the national security strategy document useful?
Everyone
Leaders of strategic planning map out objectives for 1-2 years and are classified as which level?
Operational
Under the products of a strategic leader, match the first steps to what they include: 4 steps
- Name the organization
- Number of people and subunits
- Major resources and capabilities
- Identify significant facilities
What can a well-communicated vision for an organization do? 4 things
Stretch aspirations
Unite the teams in a common effort(vision)
Establish and inspire performance
Set expectations
What question does the mission answer?
Why do we exist?
Name the seven factors for environmental analysis
International
Political
Economic/budget
Social
Technology
Demographic
Legal/regulatory
Select the three devices level security tool examples using a bottom-up approach
Input validation
Identity access management
Intrusion prevention systems
Data loss prevention
2FA
firewalls
Intrusion prevention systems
2FA
firewalls
Using the define the problem stage of operational design, who needs to contribute to the problem definition?
Everyone
Operational environment can include: 3 things
Conditions
Influences
Circumstances
During the first linked YouTube video, in the slides, on modern information warfare, what classi😾fication
State-sponsored against a private company
Referencing the YouTube video, what device is used as a way to pay for everything in China?
Huawei phone
During the second linked YouTube video on modern information warfare, how long has information warfare been used?
Since biblical times
Select the variables that drive changes in the operational environment continuous assessment :
The refinement or a change in goals
Changes in the environment
The addition of new actors
Strategic context and systematic nature of the problem
Changes in resources, methods, or processes
Strategic trends
Strategic guidance
The refinement or a change in goals
Changes in the environment
The addition of new actors
Changes in resources, methods, or processes
Name the two vital components that make up the most important steps in operational design
Describe the operational environment
Define the problem to be solved
What is the 4th step of the basic operational approach?
Identify the operational limitations
When building a business strategy, what questions are used to define (ENDS)?
What is the end state that must be achieved, how is it related to the strategic end state, and what objectives must be achieved to enable that end state?
True or false
Operational design as a business strategy impairs dialog between leaders and staff
False
True or false
A better understanding of the problem and its root causes is a direct potential value-added for business strategy using operational design
True