Sec + 10 Flashcards
(11 cards)
What consideration is crucial to avoiding technical debt?
Standardization
What is continuous integration?
Including code changes into the main codebase as soon as they are written
What log type is best to record system level events and security related activities on an os?
Firewall log
What type of log is essential for monitoring and auditing security related activities on desktop?
Security logs
Which regulation is most pertinent to secure critical infrastructure against cyber threats?
NIST SP 800-53
What does a data controller do?
Deternime the purpose and means of data processing, such as how and why personal data is collected, processed and stored.
Cloud regulations?
ISO/IEC 27018
In which risk management stage is where potential risks are determined?
Risk identification
What agreement is legally binding?
MOA- memorandum of agreement
What can a SLA do?
Provides insights to whether a vendors services and capabilities align with you
What is anomalous behavior?
Deviation from normal