Security Controls Flashcards
Security+
What are detective controls used for?
To identify and log intrusion attempts.
Give an example of a detective control.
Collecting and reviewing system logs.
What are the types of assets that security controls protect?
Data, physical property, computer systems.
What is the purpose of preventive controls?
To block access to resources and prevent security events.
What are corrective controls used for?
To apply controls after an event has been detected and reverse its impact.
What type of controls are firewalls and anti-virus systems?
Technical controls.
What is an example of an operational control?
Security guards or awareness programs.
What are physical controls designed to do?
Limit physical access to assets.
What is a compensating control?
A control used when existing controls aren’t sufficient.
How can ransomware impact be mitigated?
By restoring from backups.
What do directive controls aim to do?
Direct subjects towards security compliance.
What is the purpose of deterrent controls?
To discourage intrusion attempts.
Provide an example of a directive control.
Guard shack checks all identification.
What is an example of a preventive control?
Implementing firewall rules.
What can a well-placed warning sign act as?
A deterrent control.