click below
click below
Normal Size Small Size show me how
Security 1.2
Security 1.2 pt1 and pt2
| Term | Definition |
|---|---|
| Managerial | gives oversight of the information system. |
| Operational | implemented primarily by people. |
| technical | implemented as a system (hardware, software, or firmware). |
| Physical | deter and detect access to premises. |
| preventative | acts to eliminate or reduce the likelihood of an attack succeeding (operates before an attack takes place) |
| detective | identify and record attempted/successful intrusion(s). during an attack |
| corrective | eliminates/reduces impact of a security policy violation. used after an attack |
| directive | enforces a rule of behavior such as a policy, best practice standard, or standard operating procedure |
| detterent | psychologically discourages an attacker from attempting an intrusion. |
| compensating | A substitute for a principal control, as recommended by a security standard. It affords the same (or better) level of protection but uses a different methodology or technology. |
| Security Policy | Formalized statement that defines how security will be implemented within an organization |
| Chief Information Officer (CIO) | Overall responsible for the IT function. May also have direct responsibility for security |
| Chief Technology Officer (CTO) | Appointed by some companies to handle the more specific responsibility of ensuring effective use of new and emerging IT products/solutions in order to achieve business goals |
| Chief Security Officer (CSO) or Chief Information Security Officer (CISO) | Internal responsibility that is allocated to a dedicated department—often in charge of ensuring compliance of the company’s cybersecurity framework. |
| Information Systems Security Officer (ISSO): | Dedicated security, systems, or network administrator responsible for implementing, maintaining, and monitoring the policy |
| Security Operations Center (SOC) | a location where security professionals monitor and protect critical information assets across other business functions. |
| Development and Operations (DevOps): | A cultural shift within an organization to encourage more collaboration between developers and system administrators. |
| Incident Response: | a single point of contact for the notification of security incidents. |
| CIRT | computer incident response team |
| CSIRT | computer security incident response team |
| CERT | computer emergency response team |
| Participate in risk assessments and | testing security systems |
| Specify, source, install, and configure | secure devices/software |
| Set up and maintain | document access control |
| Monitor | audit logs |
| review | user privileges, and access controls |
| Create and test | business continuity |
| disaster recovery | plans/procedures |
| Participate in | security training and education |
| Create a security mission statement | supporting policies that emphasize the importance of the CIA Triad |
| Assign roles so that security tasks | and responsibilities are clearly understood and that impacts are assessed and mitigated across the organization |
| Consider creating business units | departments, or projects to support the security function |
| Identify and assess laws and industry regulations that | impose compliance requirements |
| Select a framework that meet’s | your organization’s compliance and business needs |
| Perform a | gap analysis to evaluate security capabilities against framework requirements |
| Identify goals for | developing and improving overall information security assurance. |