Risk Analysis & Ethics Flashcards

1
Q

Risk Analysis

A

Focuses on the identification and understanding of risks

  1. Identify future events
  2. Identify the causes of the future events
  3. Understand and evaluate the consequences
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Risk Evaluation

A

The process of assessing the severity and likelihood of a risk, determining how harmful it could be and how probable it is to occur.

(about figuring out how bad a risk could be and how likely it is to happen.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Risk Assessment

A

Risk Analysis + Risk Evaluation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Parts of security management

A

Security Risk Assessment
(Threats / likelihood
Vulnerabilities / exploits
Assets / impact
Countermeasures)

Risk Mitigation
(Safeguard implement
Additional controls)

Operational Security
(Patches
Incident handling training)

Test & review
(Scanning
Audit controls)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is Meta-ethics

A

What is goodness?

How to tell bad from evil?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Normative ethics

A

What should I do?

Virtue ethics
Deontology ethics
Consequentialism

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Applied ethics

A

What should I do in this specific case?

Bioethics
Technology
Security & privacy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Explain the different disclosures

A

Full disclosure - posting it for all to see
Non-disclosure - don’t do anything
Coordinated disclosure - CVD policy on the receiving end

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Informational self-determination

A

”The claim of individuals, groups and institutions to DETERMINE THEMSELVES, WHEN, HOW and TO WHAT EXTENT information about them is communicate to others”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly