S20-Documentation and Processes Flashcards

(50 cards)

1
Q

IT Governance

A

specific framework that guides the effective and efficient use of IT to achieve organizational objectives.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Policy

A

Defines the role of security inside of an organization and establishes the desired end state for that security program

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

what are the 3 levels in a policy?

A
  • Organizational
  • System-specific
  • issue-specific
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Organizational Policy

A

Framework to meet the business goals and define the roles, and terms associated with it

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

System-specific Policy

A

Addresses the security of a specific technology , application, network, or computer system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Issue-Specific Policy

A

addresses a specific security issue such as Email privacy, Employee termination procedures, or other specific issues

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Baseline

A

Creates a reference point in network architecture and design

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Guideline

A

Recommended action that allows for exception and allowances in unique situations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Procedure

A

Detailed Step-by-step instructions created to ensure personnel can perform a given task or series of actions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are some Common Documentation types?

A
  • Physical Network Diagrams
  • Logical Network Diagrams
  • Wiring Diagrams
  • Site Survey Reports
  • Audit and Assessment reports
  • Baseline Configs
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Physical Network Diagrams

A

Physical arrangement of network components that show physical connections and locations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Logical Network Diagrams

A

Logical Arrangement of network components that shows how data flows & how devices communicate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Wiring Diagrams

A

Labels which cables are connected to which ports

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Site Survey Reports (wireless)

A

Planning and designing a wireless network to deliver the required wireless solution

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Audit and Assessment reports

A

Delivered after a formal assessment has been conducted

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Baseline Configs

A

Set of specs for an information system, or a configuration item within a system, that has been formally reviewed and agreed on

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Site Survey Reports (wired)

A

Determines if a site has the right amount of power, space and cooling to support a new upgrade/installation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Asset Management

A

Systematic approach to the governance and realization of value of things over their life cycle

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

What is used to differentiate and identify various assets/

A

A unique Asset Tag and/or Asset ID

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Procurement Lifecycle

A

Birth to death of an asset

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Change Request

A

Verifies business impact

22
Q

Procurement

A

Determines the budget

23
Q

Deployment

A

Implements procedures in a secure config

24
Q

Maintenance/operations

A

Implements procedures for monitoring and support

25
Disposal
Implements procedures for sanitizing data remnants
26
IP Address Management (IPAM)
Tools used to plan, track and manage the IP address space in a network infrastructure
27
IPAM benefits
Creates a systematic and error-resistance method of managing IPs
28
What are some common Agreements?
- NDAs - MOUs - SLA
29
Non-Disclosure Agreement (NDA)
Confidential Data cannot be shared outside of a relationship - Administrative control
30
Memorandum of Understanding (MOU)
non-binding agreement between two or more parties that outlines their intentions, objectives, and how they will work together - "letter of intent"
31
Service level Agreement (SLA)
Documents the quality, availability, and responsibilities agreed upon by a service provider and a client
32
Mainstream Support (Windows)
Support minimum for five years
33
Extended Support (Windows)
Extends up to three to five years
34
Legacy OS
Operating system that is no longer supported
35
Change Management
Orchestrated strategy to transition from an existing state to a more desirable state
36
Change Advisory Board (CAB)
People responsible for evaluation of any proposed changes within and Organization
37
Change Owner
Individual or team that initiates the change request
38
Stakeholder (change management)
Person who has a vested interest in the proposed change
39
Impact Analysis
part of the management process that involves understanding the change's potential fallout
40
Configuration Management
Maintaining up to date documentation of a network's configuration
41
What are key Configuration Management procedures?
- Asset Management - Baselining - Cable management - Network Documentation
42
Asset management
system of Tracking network components and managing their lifecycle
43
Baselining
Collection of data that outlines normal operating conditions
44
Cable Management
Documenting physical interfaces, cable connections, layouts and locations on the network
45
Network Documentation
- Network maps &Diagram information - Admin contact info - Policies - Documentation (Vendors, Warranty, etc.) - Wiring schematics - Operating procedures and instructions
46
Asset management steps
- Prepare - Plan - Design - Implement - Operate - Optimize
47
Cable management components
- Diagrams - Cable Labeling - Location of Punch-down blocks - Cable location source - Cable location destination
48
Patch Management
Planning, testing, implementing, and auditing of software patches
49
Patch management benefits
- Security - Uptime - Compliance - Improves features
50
what are the 4 critical steps in patch Management?
- Planning - Testing - Implementing - Auditing