2.7 Physical security controls Flashcards

1
Q

Physical Security controls: what is physical security controls for?

A

Controls to prevent from any unwanted access to a building or facilities.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Physical Security controls: what are the different types of physical security controls?

A
  • Access control vestibules
  • Alarms (usually connected to a sensor that trigger the alarm)
  • Signs
  • Video surveillance (CCTV)
  • Industrial camouflage
  • Guards and access lists
  • Biometrics
  • Door access controls
  • Cable locks
  • USB data blocker
  • Proper lighting (attacker avoid light)
  • Fences
  • Fire suppression
  • Sensors
  • Drones
  • Faraday cage
  • Screened subnet (DMZ)
  • Protected Distribution System (PDS)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Physical Security controls: why signs are important in physical security ?

A

It provides clear & specific instructions on an environment that can be dangerous

Ex: fire exits, warning signs, medical resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Physical Security controls: what are the different type of CCTV ?

A
  • Motion recognition can alarm & alert when something moves
  • Object detection can identifiy plate or person’s face
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Physical Security controls: what is industrial camouflage ?

A

Blends an important faclity in plain sight that look like the local environment.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Physical Security controls: what are the different type door access controls ?

A
  • Conventional lock & key
  • Deadbolt
  • Electronic (PIN, keyless)
  • Token-based (RFID, magnetic swipe)
  • Biometric (hand, finger)
  • Multi-factor (smart card)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Physical Security controls: what is USB data blocker ?

A

A USB data blocker allows you to plug into Wi-Fi hotspots and USB charging ports safely. These solutions eliminate the risk of infecting your phone, laptop, or tablet with malware, and also prevent hackers from install and running malicious code on your system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Physical Security controls: what are the different type fire suppression systems
?

A

Fire can be suppressed with:
- Water where it is appropriated
- Chemicals: halonor dupont FM-200

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Physical Security controls: what are the different type of sensors
?

A
  • Motion detection
  • Noise detection (recognize an increase in sound)
  • Proximity reader (used with electronic door locks with access card)
  • Moisture detection
  • Temperature sensors
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Physical Security controls: what is a faraday cage?

A

A system that blocks electromagnetic fields

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Physical Security controls: what is a screened subnet (DMZ)?

A

A DMZ is a physical or logical subnet that isolates a LAN from untrusted networks like the public internet. Any service that is offered to users on the public internet should be set up in the DMZ network. The external-facing servers, services, and resources are usually placed there. Services include web, Domain Name System (DNS), email, proxy servers and File Transfer Protocol (FTP), Voice over Internet Protocol (VoIP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Physical Security controls: what is a protected distribution system (PDS)?

A

It’s a physical secure cabled network that prevent cable and fiber taps and cuts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Secure areas: why is it important to physically secure the area?

A

To prevent physica access the our system including backup system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Secure areas: what is a air gap?

A

Measure employed on one or more computers to ensure that a secure computer network is physically isolated from unsecured networks, such as the public Internet or an unsecured local area network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Secure areas: what is a vaults and safes?

A
  • Vault: a secure reinforced room often offsite to store backup media, files and protect them from disaster or theft
  • Safe (coffre): similar to a vault, space limited
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Secure areas: what is a hot and cold aisles?

A

In datacenters, thera are hot and cold aisles to optimize the cooling of the room and keep the components at otimal temperatures

17
Q

Secure data destruction: why should you protect your rubbish ?

A

By shredding and protecting your rubbish you prevent any dumpster diving attack

18
Q

Secure data destruction: what is a certificate of destruction ?

A

Destruction can be done by a 3rd party that provide a certification that everything was destroyed

19
Q

Secure data destruction: How to destroy everything on a drive?

A
  • At file level, we can Sdelete (Windows Sysinternals)
  • Whole drive wipe secure data removal (DBAN)