Security Frameworks And Controls Flashcards
What is the purpose of security frameworks? List 4
- Protecting PII
- Securing financial info
- Identifying security weaknesses
- Managing organizational risks
- Alligjing security with business goals
List the 4 core components of security frameworks (ISIM)
- Identify and document security goals
- Set guidelines to achive security goals
- Implent strong security processes
- Monitor and communicate results
What is security lifecycle?
A set of constantly evolving policies and standards regarding how an organization manages risks, follows established guidelines, and meets regulatory laws
What is NIST?
National Institute of Standards and Technology. It develops multiple voluntary compliance framework that are used worldwide yo help mitigate risk.
What is the CIA Triad?
A foundational model that helps inform how organizations consider risk when setting up systems and security policies
What does CIA stand for in this context?
Confidentiality, Integrity, Availability
What is Confidentiality in the CIA Triad
Only authorized users can access specific assets or data
What is Integrity in the CIA Triad
The data is correct, authentic and reliable.
What is Availability in the CIA Triad
Means the data is accessible to those authorized to access it.
What is the NIST CSF?
A voluntary framework that consists of standards, guidelines, and best practices to manage Cybersecurity risk
What are ethics in Cybersecurity?
Guidelines put in place to make appropriate decisions as a Cybersecurity professional
What are ethical principles in Cybersecurity?
- Confidentiality
- Privacy protections
- Adherance to the laws
What are PIIs?
Personally Identifiable Information.
Any information used to infer an individual’s identity like: name, and phone number
What are PIIs?
Personally Identifiable Information.
Any information used to infer an individual’s identity like: name, and phone number
What are SPII?
Sensitive Personally Identifiable Information.
A specific type of PII under stricter handling guidelines, including; Social security #s & credit card #s