Section 3.24 Insider Threats Flashcards
Objectives 1.2 Summarise fundamental security concepts Objectives 2.1 Compare and contrast threat actors and motivations Objectives 2.2 Explain common threat vectors and attack surfaces
1
Q
Insider Threats
Section 3
A
Insider threat refers to the potential risk posed by individuals within an organisation who have access to sensitive information and systems, and who may misuse this access for malicious or unintended purposes
2
Q
3 forms of insider threat. What can insider threats do
Insider Threats various forms
DSM
A
- Data Theft
- Sabotage
- Misuse of access privelages
3
Q
3 examples
Insider threat motivations
A
- Financial gain: Profit from sale of sensitive data
- Revenge: Harm the organisation as they have been wronged
- Carelesness/lack of awarness of cybersecurity best practices
4
Q
Insider threat attack
Edward Snowden
A
In 2013 Former contractor of the US national security agency leaked classified information to reveal extensive global survailance programmes run by the national security agency.