Security Risks and Controls Flashcards

1
Q

Enforces CIA triads in the digital space. Ex: firewall rules, access control lists, intrusion prevention systems, and encryption

A

Technical Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

includes the processes that we put in place to manage technology in a secure manner. Ex: user access reviews, log monitoring, and vulnerability management

A

Operational Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

are procedural mechanisms that focus on the mechanics of the risk management process. Examples: periodic risks assessments and security planning exercises

A

Managerial Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

intends to stop a security issue before it occurs. Examples: Firewalls and encryption are examples of this

A

Preventative Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

identify security events that have already occured, Examples:NIDS

A

Detective Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

remediate security issues that have already occurred. Example: restoring backups after a ransomware attack

A

Corrective Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Seek to prevent an attacker from attempting to violate security policies. Example: Viscous guard dogs and barbed wire fences

A

Deterrent Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

are security controls that impact the physical world. Examples: fences, perimeter lighting, locks, fire suppression systems, and burglar systems

A

Physicals Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

are controls designed to mitigate the risk associated with exceptions made to a security policy

A

Compensating Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

is the risk that an organization will become less effective in meeting its major goals and objectives as a result of the breach

A

Strategic Risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

is risk to the organization’s ability to carry out it’s day to day functions

A

Organizational Risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

occurs when a security breach causes an organization to run afoul of legal or regulatory requirements

A

Compliance Risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly