C836 Ch.8 Flashcards

1
Q

Name the most common security awareness issues

A

Protecting data, passwords, social engineering, network usage, malware, the use of personal equipment, clean desk, policy knowledge

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Why is protecting data a security awareness issue?

A

Users need to understand the criticality of carefully handling data from both a compliance and a customer retention and reputation perspective

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Why are passwords a security awareness issue?

A

Users need to understand the importance of strong passwords and password handling best practices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Social engineering

A

A technique used by an attacker that relies on the willingness of people to help others

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Pretexting

A

A technique involving a fake identity and a believable scenario that elicits the target to give out sensitive information or perform some action which they would not normally do for a stranger

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Phishing

A

A social engineering technique that uses electronic communications (email, texts, or phone calls) to convince a potential victim to give out sensitive information or perform some action

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Spear phishing

A

A social engineering technique that targets a specific company, organization, or person, and involves knowing specifics about the target to appear valid

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Tailgating (also known as piggybacking)

A

A method by which a person follows directly behind another person who authenticates to the physical access control measure, thus allowing the follower to gain access without authenticating

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Why is network usage a security awareness issue?

A

Users need to understand the security issues around connecting devices to networks, such as connecting outside devices to the corporate network, and connecting corporate resources to a public network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Why is malware a security awareness issue?

A

Users need to be educated in what malware is and how to avoid it

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Why is the use of personal equipment a security awareness issue?

A

Users need to be made aware of policies regarding personal devices in the workplace to protect a company’s assets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Why is the clean desk policy a security awareness issue?

A

Users need to be made aware of the clean desk policy to protect sensitive information at all times, even when away from one’s desk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Why is policy and regulatory knowledge a security awareness issue?

A

Users need to be aware of established corporate policies and regulations to maintain compliance throughout the organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Security Awareness, Training, and Education (SATE)

A

A program that seeks to make users aware of the risk they are accepting through their current actions and attempts to change their behavior through targeted efforts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly