Section 3.24 Insider Threats Flashcards

Objectives 1.2 Summarise fundamental security concepts Objectives 2.1 Compare and contrast threat actors and motivations Objectives 2.2 Explain common threat vectors and attack surfaces

1
Q

Insider Threats

Section 3

A

Insider threat refers to the potential risk posed by individuals within an organisation who have access to sensitive information and systems, and who may misuse this access for malicious or unintended purposes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

3 forms of insider threat. What can insider threats do

Insider Threats various forms

DSM

A
  1. Data Theft
  2. Sabotage
  3. Misuse of access privelages
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

3 examples

Insider threat motivations

A
  1. Financial gain: Profit from sale of sensitive data
  2. Revenge: Harm the organisation as they have been wronged
  3. Carelesness/lack of awarness of cybersecurity best practices
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Insider threat attack

Edward Snowden

A

In 2013 Former contractor of the US national security agency leaked classified information to reveal extensive global survailance programmes run by the national security agency.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly