13.1 Policies Flashcards

1
Q

Password policy should include:

A

Education for end users. Strong password requirements, such as the following:
Minimum password lengths
Restrictions on the use of proper names
Password expiration
No previously used passwords allowed
No words spelled out completely within the password
The use of characters from the following groups:
Uppercase letters
Lowercase letters
Numbers
Special characters

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Data Loss Prevention DLP, target activities at 3 levels:

A
Client level (data in operation)
Network level (data in transit)
Storage level (data at rest)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Incident response plan may outline various phases including:

A

Prepare, identify, contain, eradicate, recover, review.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

An AUP should be:

A

Clear
Concise
Detailed regarding acceptable and unacceptable use of the network
Congruent with the associated overall security policies of the organization
Concrete regarding consequences of AUP violations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly