Security Interests Flashcards

1
Q

what is information security?

A

the protection of information systems from accidental or intentional misuse by persons inside or outside an organization
the info needs to be protected from both digital and physical threats

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

outside threats

A

natural disasters
internet (unauthorized users, denial of service, malware eg viruses, worms etc)
human-made disasters

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

inside threats

A

employees
other insiders eg cleaners
hardware threats
systems software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

viruses

A

software written with the malicious intent to cause annoyance or damage

  • trojan- horse virus
  • backdoor programmes
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is a denial of service attack (DoS) ?

A

cyberattack in which the perpetrator seeks to make a machine or network source unavailable to its intended users by temporarily or indefinitely disrupting services of a host connected to the web

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the trojan horse virus?

A

exploit: contains code that attacks a weakspot in software
backdoor: gives malicious users remote access to the infected computer
rootkit: these are designed to effectively prevent malicious programs being detected
trojan-banker: its purpose is to steal your account data for online banking systems; e-payment systems and credit or debit cards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

what is phishing?

A

a technique to gain personal information for the purpose of identity theft, usually by means of fraudulent email

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is risk?

A

an incident or occurrence emanating from internal or external sources that prevents implementation of strategy or achievement of objectives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the Risk management responses ?

A

mitigate: implement effective internal controls
accept: do nothing, accept likelihood of risk
transfer: buy insurance, outsource
avoid: do not engage in activity that produces risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly