Tings to no Flashcards

1
Q

OpenSSL

A

Software library used to implement secure connections

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

TCPreplay

A

Capture, edit, replay packets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

TCPdump

A

Display packets on screen

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

RMF

A

Risk management framwork, mandatory for US federal agencies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

CSF

A

Cybersecurity frameworks, High level plan for security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

IEEE ISO 27001

A

Standard for Information Security Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

IEEE ISO 27002

A

Code of practice for security controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

IEEE ISO 27701

A

Privacy information management system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

IEEE ISO 31000

A

International standards for risk management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

CSA

A

Cloud security alliance, non profit cloud security talk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

CCM

A

Cloud control matrix, Security standards for the cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

SLA

A

Minimum terms for services provided

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

MOU, MOA

A

Memorandum of understanding, both sides agree

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

MSA

A

T&C for current and future responsibilities and activities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

RTO

A

recovery time objective, time to get back to running after disaster

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

RPO

A

recovery point objective, the maximum allowable data loss after a disruption. It represents the point in time to which data must be recovered to ensure minimal business impact

17
Q

MTTR

A

Minimum time to repair, time required to fix an issue

18
Q

MTBF

A

Mean time between failures, how often does this threat usually occur

19
Q

DRP

A

Disaster recovery plan

20
Q

PIA

A

Privacy impact assessment

21
Q

x.509

A

Standard for how certs are formatted

22
Q

DER, PEM, PFX, PKCS12, P7B

A

specific cert formats

23
Q

OCSP

A

Online cert status protocol

24
Q

CSR

A

Certificate signing request

25
CRL
Cert revocation list
26
OAuth
Determines your authorization, not authentication, used with OpenID
27
OpenID
You provide authentication, and then can share that with apps
28
TACACS+
Device authentication, Encrypts the entire payload
29
RADIUS
Centralized authentication, encrypts only password
30
802.1X
Authenticate some other service before accessing network
31
PAP
Deprecated authentication protocol
32
CHAP
Authentication protocol, uses a 3way handshake
33
WPS
Wifi protected setup, several methods to sign in, insecure