Domain 3B - Security Architecture and Engineering Flashcards
number one overarching primary goal of physical security is?
safety of people, people are the most valuable asset of an organization
what are the 5 pieces to physical security
- deter
- delay
- detect
- assess
- respond
deter control explain
- discourage things like trespassing, property damage, theft and intrusion with signage and other environmental design of a building and the land around it
delay control explain
- delay an attacker from gaining unauthorized access
example: locks delay and attacker from gaining unauthorized access
detective control explain
- detect if a risk has occurred
example: CCTV
assess controls
- used to determine the method of attack and the target
respond controls
- take appropriate action to remediate the risk
what is the best way to secure a perimeter
- minimize the number of entrances and exits
landscape - what role does this play in physical security
- part of perimeter control
- foliage should be maintained to provide clear sight lines for cameras and that would-be attacker cant just climb up a tree and into the building
physical security grading (perimeter) explain
- part of perimeter control
- the ground should slope down and away from the building so if there was a flood you are not part of the flood
passive infrared devices - what must happen if ambient air temp changes
- they must automatically recalibrate themselves
lighting does what
- helps deter crime
- important to safety of people
2 major types of card reader systems
- contact
- contactless
contact card reader
- employee must swipe their card through the reader for older magnetic readers
contactless card reader
- employee only need to hold their card near the rfid (radio frequency identification system) reader
social engineering attack on doors is called what
- tailgating
- piggybacking
- - an intruder follows and authorized person through the door after they have unlocked it
what are preventions for tailgating and piggybacking
- mantraps
- turnstiles
explain mantrap
- it involves 2 doors
- you must unlock the fist door, and walk into a small space, close the door behind you, then can you unlock the second door
should locks ever be used as a single line of defense
no, locks are delay only and should only be part of a layered defense
sensors to help monitor if a window has been broken
- shock - detects a small shock wave when a window breaks
- glass break sensors - essentially microphones listening for specific frequencies of sound when glass breaks
what is skimming
an attacker uses an electronic device to steal card information from valid transaction.
example: install an small electronic device attacked to an ATM machine to record debit card numbers.
what are two devices used to provide a consistent supply of clean power
- UPS
- Generator
what is a black out
no power for a long period of time
what is a brownout
prolonged low voltage