Give us your feedback!
Question:
Match the following control types to their purposes
Response:
Reducing Risk
Preventative
Correcting violations and incidents
Recovery
Corrective controls also help improve existing preventative and detective controls
Discouraging violations
Deterrent
Providing alternate ways of accomplishing a task
Compensating
Restoring systems and information
Match the following key terms
Availability
Reliable and timely access to data and resources
Confidentiality
Necessary level of secrecy, unauthorized disclosure is prevented
Shoulder surfing
Unauthorized viewing of information (screen peeking)
Social Engineering
Tricking someone into giving sensitive information (to gain unauthorized access)
A WAN is
a Wide Area Network
the Westinghouse Address Naming convention
a Wide Array Node
one of the Wilson-Adder Need types
a Working Authentication Name
More key terms from Chapter 2
Weakness or lack of a countermeasure
Vulnerability
Entity that can exploit a vulnerability
Threat agent
The danger of having a vulnerability exploited
The probability of a threat being realized
Risk
Presence of a vulnerability which exposes the organization
Threat
A LAN is
a Local Authentication Node
a Local Account Name
a Linear Applebaum Network diagram
a Least Access Notification
a Local Area Network
What is a cryptographic keystream that can only be used once?