Chapter 2 Flashcards

(9 cards)

1
Q

What are the SDLC Phases?

A
  1. Design
  2. Implementation
  3. Testing
  4. Deployment & Maintenance
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a Requirement?

A
  • Goal or constraint for a system
  • Should answer What and Why
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Functional Requirements vs Quality Requirements

A
  • Functional requirements define what a system does
  • Quality requirements ensure system trust
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is a Misuse Case?

A

Illegitimate/abnormal use of a system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Misuse Cases vs Abuse Cases

A
  • Misuse Case: broader term including unintended misuses
  • Abuse Case: narrower term focusing on intentional attacks
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are the Entities Introduced in a Misuse Case Diagram

A
  • Misuse Case: Sequence of Actions that can be performed to harm the system
  • Misuser: actor who initiates misuse case
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the Relations Introduced in a Misuse Case Diagram

A
  • Mitigates: use case that mitigates the chance of a successful misuse case
  • Threatens: misuse case threating a use case
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Characteristics of a Good Security Requirement

A
  • Explicit
  • Testable
  • Tracable
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

How are Risks Assessed?

A

Likelihood x Impact

How well did you know this?
1
Not at all
2
3
4
5
Perfectly