Security Fundamentals & Risk Management Flashcards

(7 cards)

1
Q

What are the three components of the CIA triad?

A

Confidentiality, Integrity, Availability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the difference between risk, threat, and vulnerability?

A

Risk = Threat x Vulnerability; threat is potential harm, vulnerability is a weakness

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Name key compliance frameworks relevant to security.

A

HIPAA, PCI-DSS, GDPR, SOX

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

A company wants to ensure employees don’t leak sensitive information. Which principle of the CIA triad does this protect?

A

Confidentiality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

You’re assessing threats and vulnerabilities in a company’s infrastructure. What are you conducting?

A

Risk Assessment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

A compliance audit finds issues with PCI-DSS adherence. What type of data is likely involved?

A

Credit card/payment card data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the primary purpose of a security control?

A

To mitigate risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly