Security Application and Devices Flashcards

1
Q

What is an IDS

A

Intrusion Detection System
its a device or software that monitors and analysis that data passing thru in order to identify attacks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How many IDS are there?

A

Two.
Host-based IDS (HIDS)
Network-based IDS (NIDS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What methods IDS use to detect intrusion. ?

A

Signature-based detection
Policy-based detection
Anomaly-based detection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the 4 alerts of IDS?

A

True positive
True negative
False positive
False negative.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What can IDS do ?

A

It can only alert and log suspicious activities.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is DLP?

A

DLP stands for Data Loss Prevention.
It monitors the data system while in use, at rest or in transit.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How many DLP systems are there?

A

Endpoint DLP
Network DLP
Discovery, and
Cloud.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Name two types of Disk Encryption?

A

Hardware based and Software based encryption.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is EPP?

A

Endpoint Protection Platform.

its a software agent/monitoring system that performs multiple security tasks such as anti-virus, HIDS/HIPS, firewall, DLP, and file encryption.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is UEBA?

A

User Entity Behavior Analytics.
Its a system that can provide automated identification activity by user accounts and computers hosts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly