Ethics & Law Part 2 Flashcards
(11 cards)
True or False: IT and InfoSec do not have binding codes of ethics
True
What are some professional organization for information security professionals?
ACM, ISACA, ISSA, SANS GIAC, EC-Council, (ISC)^2
What are the Ten Commandments of Computer Ethics?
- Do not use a computer to harm other people.
- Do not interfere with other people’s computer work.
- Do not snoop around in other people’s computer files.
- Do not use a computer to steal.
- Do not use a computer to bear false witness.
- Do not copy or use proprietary software for which you have not paid.
- Do not use other people’s computer resources without authorization or proper
compensation. - Do not appropriate other people’s intellectual output.
- Think about the social consequences of the program you are writing or the system
you are designing. - Always use a computer in ways that ensure consideration and respect for your
fellow humans.
What are examples of some ethical differences across cultures?
Different cultures many have different views in what is ethical
True or False: Employees must be trained and kept aware of the expected behaviors of an ethical employee
True
What are the three general causes if unethical and illegal behavior?
- Ignorance
- Accident
- Intentional
What is the best method for preventing illegal or unethical activity?
Deterrence (like technical controls, policies, laws)
What are the functions of the Department of Homeland Security (DHS)?
- Protect the citizens as well as the physical and informational assets of the United States.
- US-CERT provides mechanisms to report phishing and malware.
- CISA – offers services to government, industry, and private sector
What is the U.S. Secret Service?
Protective services; charged with safeguarding the nation’s financial infrastructure and payments system to preserve integrity of economy
What is the FBI?
- Primary law enforcement agency that investigates traditional crimes and
cybercrimes. - Key priorities include computer/network intrusions, identity theft, and fraud
FBI’s National InfraGard Program
1) Maintains an intrusion alert network
2) Maintains a secure Web site for communication about suspicious activity or intrusions
3) Sponsors local chapter activities
4) Operates a help desk for questions
What is the National Security Agency (NSA)?
- The nation’s cryptologic organization
- Responsible for signal intelligence and information assurance (security)
- Information Assurance Directorate (IAD) is responsible for the protection of systems that
store, process, and transmit information of high national value.