SECURITY PRINCIPLES Flashcards

1
Q

Confidentiality

A

Confidentiality relates to permitting authorized access to information, while at the same time protecting information from improper disclosure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Integrity

A

Integrity is the property of information whereby it is recorded, used and maintained in a way that ensures its completeness, accuracy, internal consistency and usefulness for a stated purpose.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Availability

A

Availability means that systems and data are accessible at the time users need them.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Confidentiality-related terms (3)

A

-Personally Identifiable Information (PII)
-Protected health information (PHI)
-Classified or sensitive information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Sensitivity

A

 sensitivity is a measure of the importance assigned to information by its owner, or the purpose of denoting its need for protection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

The concept of integrity applies to:

A

-information or data
-systems and processes for business operations
-organizations
-people and their actions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Data Integrity

A

Data integrity is the assurance that data has not been altered in an unauthorized manner. This to ensure that it is free from improper modification, errors or loss of information and is recorded, used and maintained in a way that ensures its completeness.
 Data integrity covers data in storage, during processing and while in transit.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

System integrity

A

System integrity refers to the maintenance of a known good configuration and expected operational function as the system processes the information. Ensuring integrity begins with an awareness of state, which is the current condition of the system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Authentication

A

Authentication is a process to prove the identity of the requestor.

There are three common methods of authentication:

-Something you know/(Knowledge-Based): Passwords or paraphrases

-Something you have/(Token Based): Tokens, memory cards, smart cards

-Something you are/(Characteristic Based): Biometrics , measurable characteristics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Authorization

A

The right or permission that is granted to a system entity to access a system resource

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Integrity

A

The property that the data has not been altered in an unauthorized manner

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Confidentiality

A

The characteristic of data or information when it’s not made available or disclosed to unauthorized persons

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Privacy

A

The right of an individual to control the distribution of information about themselves

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Availability

A

Ensuring timely and reliable access to and use of information by authorized users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Non-repudiation

A

The inability to deny taking an action, such as sending an email message

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Authentication

A

Access control process that compares one or more factors of identification to validate that the identity
claimed by a user or entity is known to the system.

17
Q

-HIPPA
-GDPR

A

-Health Insurance Portability and Accountability Act (America)
-General Data Protection Regulation (Europe)