(Pre Security) Section 3: Careers in Cyber Flashcards
What are the responsibilities of a security analyst?
- Working with various stakeholders to analyse the cyber security throughout the company.
- Compiling ongoing reports about the safety of networks, documenting security issues and measures taken in response.
3, Developing security plans, incorporating research on new attack tools and trends, and measures needed across teams to maintain data security.
Why are security analysts important and what do they do?
Security analysts are integral to constructing security measures across organisations to protect the company from attacks.
Analysts explore and evaluate company networks to uncover actionable data and recommendations for engineers to develop preventative measures. This job role requires working with various stakeholders to gain an understanding of security requirements and the security landscape.
What do security engineers do and what is their ultimate goal?
Security engineers develop and implement security solutions using threats and vulnerability data - often sourced from members of the security workforce. Security engineers work across circumventing a breadth of attacks, including web application attacks, network threats, and evolving trends and tactics. The ultimate goal is to retain and adopt security measures to mitigate the risk of attack and data loss.
What are the responsibilities of security engineers?
- Testing and screening security measures across software
= Monitoring networks and reports to update systems and mitigate vulnerabilities
= Identifying and implement systems needed for optimal security
Incident response metrics include…
MTTD, MTTA, and MTTR - the meantime to detect, acknowledge, and recover (from attacks.)
MTTD stands for…
Meantime to detect
MTTA stands for…
Meantime to acknowldge
MTTR stands for…
Meantime to recover
What are the responsibilities of incident responders?
- Developing and adopting a thorough, actionable incident response plan
- Maintaining strong security best practices and supporting incident response measures
- Post-incident reporting and preparation for future attacks, considering learnings and adaptations to take from incidents