Tings to no Flashcards

1
Q

OpenSSL

A

Software library used to implement secure connections

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

TCPreplay

A

Capture, edit, replay packets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

TCPdump

A

Display packets on screen

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

RMF

A

Risk management framwork, mandatory for US federal agencies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

CSF

A

Cybersecurity frameworks, High level plan for security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

IEEE ISO 27001

A

Standard for Information Security Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

IEEE ISO 27002

A

Code of practice for security controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

IEEE ISO 27701

A

Privacy information management system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

IEEE ISO 31000

A

International standards for risk management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

CSA

A

Cloud security alliance, non profit cloud security talk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

CCM

A

Cloud control matrix, Security standards for the cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

SLA

A

Minimum terms for services provided

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

MOU, MOA

A

Memorandum of understanding, both sides agree

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

MSA

A

T&C for current and future responsibilities and activities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

RTO

A

recovery time objective, time to get back to running after disaster

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

RPO

A

recovery point objective, the maximum allowable data loss after a disruption. It represents the point in time to which data must be recovered to ensure minimal business impact

17
Q

MTTR

A

Minimum time to repair, time required to fix an issue

18
Q

MTBF

A

Mean time between failures, how often does this threat usually occur

19
Q

DRP

A

Disaster recovery plan

20
Q

PIA

A

Privacy impact assessment

21
Q

x.509

A

Standard for how certs are formatted

22
Q

DER, PEM, PFX, PKCS12, P7B

A

specific cert formats

23
Q

OCSP

A

Online cert status protocol

24
Q

CSR

A

Certificate signing request

25
Q

CRL

A

Cert revocation list

26
Q

OAuth

A

Determines your authorization, not authentication, used with OpenID

27
Q

OpenID

A

You provide authentication, and then can share that with apps

28
Q

TACACS+

A

Device authentication, Encrypts the entire payload

29
Q

RADIUS

A

Centralized authentication, encrypts only password

30
Q

802.1X

A

Authenticate some other service before accessing network

31
Q

PAP

A

Deprecated authentication protocol

32
Q

CHAP

A

Authentication protocol, uses a 3way handshake

33
Q

WPS

A

Wifi protected setup, several methods to sign in, insecure