Inside Cloud & Security Flashcards

(11 cards)

1
Q

1 When you have an answer that saves human lives, it probably is the best answer

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

2 What is ESP? Encapsulation security payload?

A

In cyber security, ESP most commonly refers to Encapsulating Security Payload, a core component of the IPsec (Internet Protocol Security) protocol suite. Don’t pick AH (authentication header) since it doesn’t provide encruption. ESP is responsible for providing confidentiality (encryption), data integrity (ensuring data hasn’t been tampered with), and authentication (verifying the source of the data) for network traffic. It achieves this by encrypting the actual data being transmitted (the payload) within the network packet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

2 What should come to your mind if you have a question that says 2 networks?

A

data encryuption and site to site vpn

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

6 Will implementing 2 factor authentication stop password sharing?

A

no. what difference does it make? people will still share their 2 factor also.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

6 If a question has the word “what should we do first”? Which answer choice should you pick? What should you not pick?

A

Do not pick training! It never comes first. Usually, it is policy that is the answer.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

7 What is a data owner, data custodian, and data steward?

A

Data owner>steward>custodian. Data owners are ultimately accountable for the quality, accuracy, and security of specific data assets. Data custodians are responsible for the technical implementation and maintenance of data storage, access, and security. Data stewards focus on the business rules and policies that govern data, ensuring its proper use and alignment with organizational goals.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

8 Data classification is what in the CIA triad? What about redudancy?

A

Data classification is Confidentiality, remember who can access. Redudancy is Integrity and Availability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

8 If a question ask, “ensure compliance” what does that mean?

A

It means like preventing…so it can’t be a scanning or detecting answer.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q
  1. What’s another word for “best minimize loss”
A

This is another word for prevention

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

11 What layer does WAF work at? What about NGFW? What is difference?

A

Both Layer 7. both security tools, but they protect different aspects of a network. A WAF specializes in securing web applications from web-based attacks like SQL injection and cross-site scripting. An NGFW, on the other hand, provides broader network security, including application control, intrusion prevention, and malware protection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly