Physical security - Garima's Deck Flashcards
What are the primary functions of a PPS?
Detection, Delay and Response
What is a defence in depth approach?
An adversary must avoid or defeat a number of protective devices or features in sequence.
What is the purpose of the design concept?
The design concept incorporates the basis of design; documents its findings, conclusions and recommendations from any initial survey, and is the first opportunity to document the project’s design.
What approach generally yields the most effective design solution a problem?
Systems approach
What is Risk Management?
Risk Management is coordinated activities to direct and control an organization with regard to risk.
What does Risk Management rely on?
Risk Management relies on risk assessment, which in turn relies on vulnerability assessment.
What does Risk Assessment rely on?
Vulnerability Assessment
What are the classes in which adversaries can be classified?
Outsiders, Insiders, and outsiders in collusion with insiders.
What are the four estimates of likelihood of attack?
Frequency estimate, possibility estimate, qualitative estimate, conditional estimate
What type of estimate of likelihood of attack ranks the attack possibility of an event?
Qualitative estimate
A well designed and integrated PPS is more effective against ____________ (fill in the blanks)
low level threats than high high level threats.
A well designed and integrated PPS is more effective against ____________ (fill in the blanks)
low level threats than high high level threats.
If a PPS is not meeting its goals and objectives it is time to begin
Part II of the PPS system - the design phase.
Which is the most difficult security measure to quantify
deterrance
Why is detection, in itself, worth little?
Potential for false positive is directly related to the sensitivity of the PPS
An effective physical security strategy employs seven basic functions in an orchestrated and tailored manner.
- Access Control
- Deterrence
- Detection
- Assessment
- Delay
- Response
- Evidence
What are the three formats of barriers?
Structural components, electrical components, and human components
What type of lock should be used if there are windows on either side of the door?
A double cylinder keyed deadbolt
Mention types of physical security mesures?
Barriers, fencing, bollards, terrain, locks, design architecture and engineering, CPTED, landscaping, lighting, and glass treatment
Mention types of electronic security measures
Surveillance, access control, intrusion detection systems, communications
What purposes does an incident management system serves?
guiding a response to an incident in real time
supporting post-incident analysis and recurrence reduction
informing the planning process for physical security upgrades or program modifications
assessing the effects of facility design and layout on incident prevention and response
comparing incident characteristics in similar facilities based on physical security traits.
What should the methodology employed in physical security assessments examine?
general and specific threats, vulnerabilities, asset criticality, potential consequences, likelihood, severity, and velocity
The physical security assessment/security survey is one tool to specifically address
the security risk to physical (tangible) assets.
A risk assessment lays more stress on vulnerabilities or a security survey?
Security survey. Whereas a comprehensive risk assessment focuses equally on assets, threats, vulnerabilities, and consequences, a security survey places more emphasis on vulnerabilities