Tools & Security Frameworks Flashcards
(11 cards)
What does Wireshark do?
Captures and analyzes network packets
What is the NIST cybersecurity framework?
Guidelines for cybersecurity best practices
What is syslog used for?
Logging standard for system events
What device inspects and filters traffic entering and leaving a network?
Firewall
What network design separates public-facing services from the internal network?
DMZ (Demilitarized Zone)
Why would an organization use VLANs?
To segment network traffic for security and performance
A user connects remotely to the office securely over the internet. What are they likely using?
VPN (Virtual Private Network)
A security analyst uses Wireshark to examine a packet in detail. What are they likely doing?
Network traffic analysis
Which tool would you use to correlate logs from multiple devices?
SIEM (Security Information and Event Management)
What does Nmap help identify on a remote host?
Open ports and services
What is syslog used for in enterprise environments?
Standardized event logging