Security Fundamentals & Risk Management Flashcards
(7 cards)
What are the three components of the CIA triad?
Confidentiality, Integrity, Availability
What is the difference between risk, threat, and vulnerability?
Risk = Threat x Vulnerability; threat is potential harm, vulnerability is a weakness
Name key compliance frameworks relevant to security.
HIPAA, PCI-DSS, GDPR, SOX
A company wants to ensure employees don’t leak sensitive information. Which principle of the CIA triad does this protect?
Confidentiality
You’re assessing threats and vulnerabilities in a company’s infrastructure. What are you conducting?
Risk Assessment
A compliance audit finds issues with PCI-DSS adherence. What type of data is likely involved?
Credit card/payment card data
What is the primary purpose of a security control?
To mitigate risk