Corporate Security #2 Flashcards
(11 cards)
What are the 6 examples of Additional Cyber Security?
1) Data Protection 2) Segregation of Duties 3) Network Fragmentation and Monitoring 4) Honeypots 5) Penetration Testing 6) Standards
What are 6 ways to implement Data Protection? 1) ⚠️2) 🔐3) 🧩4) 🗃️5) 🕵️
1) Understand risk 2) Use encryption 3) Fragmentation (break up data and store in different places) 4) Data Backups 5) Privacy protection (remove PII)
What is Segregation of Duties?
Making more than one person complete security critical tasks
What is Network Fragmentation?
Split infrastructure, so then only access given to those who need it
What is Network Monitoring?
Observe and record traffic on the network
What are Honeypots?
Decoys to lure attackers
What are 3 benefits of Honeypots?
Detect attacks, deflect attackers, get info on attack stratergies
Research vs Production Honeypots
Research = Complex Honeypot, study attacker stratergies. Production = Simpler, act as a distraction
High vs Low Interaction Honeypots
High = Complex, simulate a real system. Low = Simple, crack quickly to show attacker nothing here is valuable
What is Pentesting?
Authorised simulated attack to identify system security
What are Standards?
Large documents fully detailing compliance for security