Master this deck with 36 terms through effective study methods.
No description available
Directly relevant information for a specific context.
Through documentation, securing, and using forensic tools.
Digital, physical, and testimonial evidence.
Preparation, detection, analysis, containment, eradication, recovery, and review.
Detection details, response actions, recovery measures, and lessons learned.
To identify assets, threats, vulnerabilities, and evaluate risks.
Assets, threats, vulnerabilities, impact, and likelihood.
Risk = Likelihood of Threat × Impact of Threat.
They identify new threats and ensure compliance.
Identify assets, threats, vulnerabilities, assess impact, and document findings.
A continuous process of recognizing assets, threats, and vulnerabilities.
Unpatched software, lack of training, inadequate controls, and suspicious activity.
Clarifies risks, prioritizes them, and supports informed decision-making.
Operational, financial, technical, legal, and reputational risks.
Identification, assessment, mitigation, monitoring, and communication.
They protect networks by controlling traffic flow.
It identifies and eliminates harmful software.
They enable secure communication through encryption.
MDR provides ongoing monitoring and threat response.
It assesses security by simulating cyber attacks.
It helps employees understand security best practices.
Regularly updating systems to close vulnerabilities.
It improves security by requiring multiple verification methods.
It can lead to increased risk of oversight and errors.
Confidentiality, Integrity, Availability.
Sensitive information is only accessible to authorized users.
It prevents unauthorized alterations or tampering.
Malware includes viruses and ransomware.
Network infrastructure and end-user devices are vulnerable.
Documenting actions taken during the detection phase.
A guideline for managing cybersecurity risks.
Assets, threats, vulnerabilities, and their interactions.
They help identify and mitigate emerging risks.
A process for identifying and managing cybersecurity risks.
It informs decision-making and prioritizes security efforts.
Risk assessment, mitigation strategies, and monitoring plans.