Security+ Exam Flashcards
What does AV Software stand for?
Antivirus Software
What is DRP?
Disaster Recovery Plan
Define IRP.
Incident Response Plan is a structured approach that organizations follow to identify, contain, and recover from cybersecurity incidents.
What is an AUP?
Acceptable Use Policy outlines rules and guidelines for an organization’s IT resources, including networks, systems, and data.
What does IPS stand for?
Intrusion Prevention System that monitors and blocks malicious traffic.
What is the function of an IDS?
Intrusion Detection System that monitors and alerts on malicious traffic.
What are directive security controls?
Policies, guidelines, or procedures designed to influence user behavior and enforce security best practices.
What are compensating security controls?
Alternative security controls when primary controls go down.
What is PKI?
Public Key Infrastructure for managing digital certificates and encryption keys.
List the components of PKI.
- Certificate Authorities (CAs)
- Registration Authorities (RAs)
- Cryptographic Standards
What is the role of a Registration Authority (RA)?
Intermediary between users and the CA that verifies certificate applicants before requesting a certificate from the CA.
What does a Certificate Authority (CA) do?
Issues and manages digital certificates, authenticates entities, and signs certificates to establish trust.
What is key escrow?
A method where encryption keys are stored by a trusted third party.
What is a Recovery Agent?
A trusted third party that can help retrieve lost encryption keys.
Define PKCS.
Public Key Certificate Standards for public key cryptography.
What does AAA stand for?
Authentication, Authorization, Accounting
What is GDPR?
General Data Protection Regulation is a privacy regulation by the EU to protect personal data/privacy rights.
What is CHAP?
Challenge Handshake Authentication Protocol, a challenge-response mechanism to verify user identity. Uses threeway handshake (Challenge, Response, Verification).
What does TACACS+ stand for?
Terminal Access Controller Access Control System +.
What is PAP?
Password Authentication Protocol, where username and password are sent in plain text.
What does RADIUS stand for?
Remote Authentication Dial-in User Service.
What is MS-CHAP?
Microsoft Challenge Handshake Authentication Protocol, a version of CHAP used in Windows networks.
What is device authentication?
Authentication based on IP address, digital certificate authority, or MAC address.
What does MAC stand for?
Media Access Control, an identifier for a device’s Network Interface Card (NIC).