Security Roles And Controls Flashcards

1
Q

Security Control Categories

A

Managerial
- overseeing design and implementation
Operational
- implemented by ppl
Technical
- implemented using systems (hardware or software)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Security Control Types

A

Preventive (door lock, firewall)
Detective (ids, motion detector)
Corrective (IPS, backups)
Deterrent (warning signs,login banner)
Compensating (backup pwr, hot site)
Physical (fences, locks, mantraps)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

CIA

A

Confidentiality
Integrity
Availability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

NIST

A

National Institute of Standards and Technology
(Exclusively on IT security, rather than IT service provisioning)

Framework with 5 functions

Identify, Protect, detect, respond, recover

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

SOC

A

Security Operations Center

Location where professionals monitor and protect critical information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

CIRT

A

Computer Incident Response Team

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Computer Security Act

A

Requires federal agencies to develop security policies for computer systems that process confidential info

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Federal Information Security Management Act

A

Governs security of data processed by federal government agencies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Gramm-Leach-Bliley Act

A

Requires financial institutions to explain how they share and protect customers private info

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Sarbanes-Oxley Act

A

Mandates the implementation of risk assessment, internal controls and audit procedures.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly