S1 M3 Flashcards

1
Q

5 CIS design principles

A

Align
Measurable
Offense informs defense
Focused
Feasible

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
1
Q

What are CIS

A

Recommendations of a set of actions, processes, and best practices which can be implemented to strengthen their cybersecurity defenses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

CIS Control 1 - Inventory and Control of Enterprise Assets

A

Maintaining an asset inventory list showing totality of assets so you know what you needs to be monitored and protected

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

CIS Control 2 - Inventory and Control of Software Assets

A

Organizations are to track and actively monitor what software they have so only authorized software may be installed and unauthorized software is deleted

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

CIS Control 3 - data protection

A

helps organizations securely manage the entire life cycle of their data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

CIS Control 4 - Secure configuration of Enterprise Assets and Software

A

Helps organizations establish and maintain a secure baseline

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

CIS Control 5 - Account Management

A

Helps organizations manage credentials and authorization for user accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

CIS Control 6 - Access Control Management

A

Individuals should only have access to privileges required for their role.

Control involves deleting out accounts based on least privilege, granting and revoking access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

CIS Control 7 - Continuous Vulnerability Management

A

Continuously tracking your vulnerabilities so you can identify and eliminate weak points or windows of opportunity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

CIS Control 8 - Audit log management

A

Keeping a log of events so you can be alerted to and recover from cyber attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

CIS Control 9 - Email and web browser protection

A

Control provides recommendations on how to detect and protect against cybercrime attempted through email or the internet

Enforce URL filtering
block certain file types
Restrict ability to install add-ons

How well did you know this?
1
Not at all
2
3
4
5
Perfectly