Security Controls - CompTIA Security+ SY0-701 - 1.1 Flashcards

security plus (16 cards)

1
Q

Technical controls

A

Controls using systems

operating system controls

Fire walls/anti-virus

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Managerial controls

A

admin controls that go with security design/implementation

security polices/stand op procedurees

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Operational controls

A

controls implemented by people instead of systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Physical Controls

A

Limit physical access

guard shack

Fences, locks

badge readers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Preventive controls examples

A

technical=fire wall

managerial=on-boarding policy

operational=guard shack

Physical=door lock

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Deterrent control

A

discourage an intrusion attempt

does not directly prevent access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Make an attacker think twice (Deterrent prt2)

A

app splash screen

threat of demotion

front desk reception

posted warning signs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Deterrent examples prt 3

A

Technical=splash screen

managerial=demotion

operational = reception desk

physical=warning signs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Detective control types

A

identify/log intrusion attempts

collect review system logs

login reports

patrol property

enable motion detectors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

detective control examples

A

Technical = sys logs

managerial = review login reports

operational=property patrols

physical = motion detectors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Corrective controls types

A

apply a control after the vent has been detected

reverse the impact

continue operating with minimal downtime

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

corrective control examples

A

technical=restoring back ups mitigate a ransomware infection

managerial=polices for reporting issues

operational=contact authorities

physical =fire extinguisher

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

compensating control types

A

control using other means

existing controls aren’t sufficient

may be temporary

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

compensating control type examples

A

tech=firewall blocks specific apps

managerial=separation of duties

operational=require multiple security staff

physical = power generator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Directive control types

A

direct a subject towards a security compliance

a week security control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

directive control examples

A

tech=store all sensitive files in a protected folder

managerial = compliance polices/procedures

operational=train users security policy

physical=sign “authorized personnel only”