Chapter 9 - Security Operations and Administration Flashcards
Security administration
the group of individuals responsible for planning, designing, implementing, and monitoring an organization’s security plan
Security operations center
the physical location where security administration works
Advantages of security outsourcing
offers a high level of expertise that an organization may not have on their own
Disadvantages of security sourcing
the outsourcing firm might not have internal knowledge
Common documentation requirements
- Sensitive assets list
- The organization’s security process
- The authority of the persons responsible for security
- Policies, procedures, and guidelines adopted by the organization
The organization must comply with rules on two levels…
- organizational
- regulatory
Organizational compliance
adhering to the organization’s policies, procedures, and ethics
Regulatory compliance
meeting all applicable laws, regulations, and guidelines established by governmental bodies and regulatory organizations
Memorandum of understanding (MOU)
a non-binding agreement between two parties that describes the broad outlines of an agreement that two or more parties have reached
Event logs
records of actions that an organization’s operating system or application software creates, showing which user or system accessed data or a resource and when
Compliance liaison
makes sure that all personnel are aware of and comply with the organization’s policies
Remediation
fixing security vulnerabilities
Data owner
person who owns the data and is responsible for classifying it
System owner
person or group that manages the infrastructure
We can classify information by…
criticality
sensitivity
value
Internal and external auditors should…
review organization’s information-classification status during the audit process and evaluate the level of compliance
Information security personnel should…
regularly visit workspaces and submit appropriate reports when violations occur
Configuration management
the process of managing all changes to computer and device configurations
System lifecycle
includes all aspects of software life, from initiation to disposal
System development life cycle
includes all aspects of software development, from initiation until production
Difference between the SLC and SDLC
The SDLC makes up part of the SLC. The SDLC only includes initiation and planning until production