Week 2 Flashcards
Core of any business Security structure?
Security Management
What serves as foundation of a corporations security program?
Core Components
Potential loss or harm related to technical infrastructure, use of technology, or reputation of an organization.
Risk
What are the 3 main security objectives?
Confidentiality, Integrity, Availability
Weakness that may provide an entry point for an attacker leading to unauthorized access?
Vulnerability
Any potential danger to information or systems?
Threat
Someone or something who will take advantage of a known vulnerability
Threat Agent
Likelihood of a threat agent taking advantage of a vulnerability to cause harm to an asset
Risk
Instance of being exposed to losses from a threat agent
Exposure
Parameters, safeguards, or countermeasures implemented to protect data ,infrastructure, and people in an organization
Security Controls
a documented set of your organization’s information security policies, procedures, guidelines, and standards.
Security Program
True or False. Security Administration can be single individual or teams?
True, based on size and requirement of company
3 Types of Control
Administrative, Technical, Physical
What type of control are these included?
Developing and publishing of policies, standards, procedures and guidelines
Risk Management
Screening personnel
Administrative controls
Also called Logical controls; This includes configuration of security devices & infrastructure, implement and maintain access control mechanisms
Technical Controls