Section 1 - Overview Of Security Flashcards
What are the exams 5 domains?
Attacks Threats & Vulnerabilities
Architecture & Design
Implementation
Operations and Incident Response
Governance, Risk & Compliance
What is the CIA Triad?
Confidentiality, Integrity & Availability
AAA of security?
Authentication
Authorization
Accounting
What are the 4 security threats categories?
Malware
Unauthorized Access
System Failure
Social Engineering
What are the three means to threat mitigation?
Physical contols
Technical controls
Administrative controls
What are the 5 types of hackers?
White hat
Black hat
Grey hat
Blue hat
Elite
What arethe four categories of threat actors?
Script kiddies
Hacktivists
Organized crime
APTs
What are the four aspects of an intelligence source to consider to evaluate its quality?
Timeliness
Relevancy
Accuracy
Confidence levels
What are the 4 types of intelligence sources?
Proprietary
Closed-source
Open-source (US-CERT, UK’s NCSC, MISP…)
Open-source intelligence (OSINT)
Describe each one of the 3 classic Attack Framework
SP