Give us your feedback!
Question:
Match the following control types to their purposes
Response:
Reducing Risk
Preventative
Correcting violations and incidents
Recovery
Corrective controls also help improve existing preventative and detective controls
Discouraging violations
Detective
Providing alternate ways of accomplishing a task
Compensating
Restoring systems and information
More key terms from Chapter 2
Weakness or lack of a countermeasure
Vulnerability
Entity that can exploit a vulnerability
Threat agent
The danger of having a vulnerability exploited
Threat
The probability of a threat being realized
Risk
Presence of a vulnerability which exposes the organization
Exposure
A WAN is
a Wide Array Node
one of the Wilson-Adder Need types
the Westinghouse Address Naming convention
a Working Authentication Name
a Wide Area Network
What is a cryptographic keystream that can only be used once?
Match the following key terms
Availability
Reliable and timely access to data and resources
Confidentiality
Necessary level of secrecy, unauthorized disclosure is prevented
Shoulder surfing
Unauthorized viewing of information (screen peeking)
Social Engineering
Tricking someone into giving sensitive information (to gain unauthorized access)
A LAN is
a Local Account Name
a Local Area Network
a Local Authentication Node
a Linear Applebaum Network diagram
a Least Access Notification