Selecting Infrastructure Controls Flashcards
What is a Control?
A protective measure put in place to reduce potential risks and safeguard an organizations assets
What is the Principle Of Least Privilege?
mandates that a user or system should only have the necessary access rights that they need to perform their duties.
What is Defense in Depth?
emphasizes the use of multiple layers of security to mitigate threats even if one control fails,
What is a Risk-Based Approach?
prioritization of controls based on the potential risks and vulnerabilities that are specific to your organization’s infrastructure.
What is Lifecycle Management?
Regularly reviewing, updating, and retiring controls to adapt to evolving threat landscapes
What is the Open Design Principle?
Ensuring transparency and accountability through rigorous testing and scrutiny of infrastructure and controls