CH1 Flashcards

(14 cards)

1
Q

Control plays a crucial role in minimizing vulnerabilities within an organization technical systems including computer networks, software, and data management.

A

Technical Control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Type of controls policies, procedures and practices by management to guide and direct the activities of indviduals and teams.

A

Mangerial Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

This type of control revovles around the execution o fday to day activities and processes necessary for delivery goods and services. They involves managing operational procedures, ensuring adherence to quality standards, enhancing productivitiy and optimzing effiiciency.

A

Operational Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Controls are a critical aspect of overall security focusing on the protetion of a orgstangable assets, facilities and resources.

A

Physical Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Examples of Technical Controls

A

Performance Reviews, Risk Assesment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Examples of Operational Controls

A

Incident response procedure, security awareness training, user access magagement

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Example of managerial controls

A

Perforamnce reviews, Risk assesment, code of conduct

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Control Type - These controls are designed to prevent problems or risks from occurign in the first place. They focus of eliminating o minimzing potential threats before they cause harm
Example - Firewalls

A

Preventive Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Control type aim to discourage indivduals from engaging in undesirable behaviors or activities. They create a perception of risk or negative consequences to deter offenders
Example - Cameras, strong passwords

A

Deterrent Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Control type implemented to ID and detect problems or risks which have already occured. Help to uncover issues or anomalies promptly to initate actions
Examples - SIEM

A

Detective Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Control Type that is put in place to address a problem or risks after they have been ID’ed. Back up or recovery

A

Corrective Control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Control Type where alternative measure implment when primary controls are not feasible of sufficient. Help offset the limitation or Deficinies of other controls.

Expample - Extra layer of security

A

Compensation Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Control type that invovles providing spefici insturctions or guidleines to ensure compliance with policies, porceudres or regulations. They establish a clear framework for employees to follow

A

Directive Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly