Supporting Network Security Design Flashcards

(15 cards)

1
Q

Network Segmentation

A

It means dividing networks into zones which have defined trust levels. Segmentation can be achieved through VLANs and subnets.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Intrusion Detection System Detection types:

A
  1. Signature-based: matches traffic pattern
  2. Anomaly based: detects abnormal behavior
    IDS is installed behind firewall, requires sniffer like mirroring and it is not detectable by attackers because it does not have IP address.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Intrusion Prevention System (IPS)

A

Preventive measures: ends the malicious session, temporarily blocks attacker’s IP, Throttle bandwidth, apply complex rules, modify packets, and runs custom scripts.
It’s built into modern firewalls and proxies and all traffic flows through the IPS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Internet of Things (IoT)

A

Embedded devices with networking, and software that can communicate with each other and other systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are examples of Physical Access Controls Systems (PACs)

A

Smart locks, alarms, surveillance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are examples of Building Automation Systems (BAS)

A

Controls HVAC, power, lighting, etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Industrial Internet of Things (IIoT)

A

Embedded devices and IoT devices used in industrial sectors like energy, mining, etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

AIC Triad

A

IIoT focuses on safety, availability and integrity.
Availability > Integrity > Confidentiality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Industrial Control Systems (ICS)

A

Controls machinery and automates processes in critical infrastructure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Distributed Control System (DCS)

A

A type of ICS managing automation within a single site.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Core components of ICS

A
  1. Programmable Logic Controllers: Embedded controllers that manage sensors and actuators (motors, valves, etc.)
  2. Human-machine Interfaces (HMI): Local panels or software used by operators to control or configure PLCs.
  3. Control Server: Governs the entire process automation system.
  4. Data Historian: Centralized database storing all historical data from the control loop (for analysis and auditing)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Supervisory Control and Data Aquisition (SCADA)

A

Coordinates control of multiple remote sites or large-scale industrial systems. Runs as software on ordinary computers to monitor, collect data, and control operations remotely.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Operational Technology Network (OT)

A

Communications network designed to implement an industrial control system rather than data networking.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Pan-tilt-zoom camera

A

Cameras that can zoom and rotate to track target

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Geofencing

A

Creating a virtual boundary around a real-world location. Location services can detect if a device enters or exits the boundary.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly