ch 11 Flashcards

exam 2 (15 cards)

1
Q

Trust Service Framework

A
  1. security
  2. confidentiality
  3. privacy
  4. processing integrity
  5. availability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Types of information securities (IS) Preventative security controls

A

-user access controls
-physical/network access controls
-detective security controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Multifactor authentication

A

The use of two or more types of authentication credentials in conjunction to achieve a greater level of security.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Biometric identifier

A

A physical or behavioral characteristic used as an authentication credential.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Border router

A

A device that connects an organization’s information system to the Internet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Firewall Firewall

A

A network security system or software that monitors and controls incoming and outgoing network traffic based on predetermined security rules.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Demilitarized zone (DMZ)

A

A separate network located outside the organization’s internal information system that permits controlled access from the Internet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Routers

A

Special purpose devices designed to read the source and destination address fields in IP packet headers to decide where to send (route) the packet next.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Network Intrusion Detection Systems (IDSs)

A

A set of sensors and a central monitoring unit that analyze logs for signs of attempted or successful intrusions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Preventive Controls

A

These are designed to deter problems before they occur

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Examples of Preventive controls

A

-Hiring qualified personnel
-Segregating employee duties
-Controlling physical access to assets and information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Detective controls

A

These help identify problems that have already occurred. Examples include:

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

detective controls examples

A

-Duplicate checking of calculations
-Preparing bank reconciliations
-Employee monitoring and log analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

corrective controls

A

These are used to fix problems and recover from errors. Examples include

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

corrective controls examples

A

Maintaining backup copies of files
Correcting data entry errors
Resubmitting transactions for processing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly