What is the Zero Trust model?
A security model that assumes breach and verifies each request as though it originates from an untrusted network.
What are the three principles of Zero Trust?
What is the shared responsibility model in cloud security?
Defines which security tasks are handled by the cloud provider vs. the customer.
What is defense in depth?
A layered approach to security using multiple protective measures.
What is identity in cybersecurity?
The way users and devices are authenticated and authorized.
What is compliance?
Adherence to laws, regulations, and policies governing data and operations.
What is governance?
The framework for managing and controlling IT resources and data.
What is risk management?
The process of identifying, assessing, and mitigating risks.
What is privacy?
The protection of personal data and user rights.
What is the Microsoft Trust Center?
A resource for information on Microsoft’s security, privacy, and compliance practices.
What is authentication?
The process of verifying the identity of a user or device.
What is authorization?
The process of granting access to resources based on identity.
What is a security posture?
The overall security status of an organization’s systems and data.
What is a security incident?
An event that may indicate a breach or attempted breach of security.
What is a threat?
A potential cause of an unwanted impact to a system or organization.
What is a vulnerability?
A weakness that can be exploited by a threat.
What is an attack vector?
A path or method used by a threat actor to gain unauthorized access.
What is a risk?
The potential for loss or damage when a threat exploits a vulnerability.
What is a mitigation?
A measure taken to reduce the impact or likelihood of a risk.
What is a security control?
A safeguard or countermeasure to avoid, detect, or minimize security risks.
What is a policy?
A set of rules that govern the behavior of users and systems.
What is a standard?
A defined level of quality or compliance.
What is a procedure?
A series of steps to accomplish a task or enforce a policy.
What is a guideline?
Recommended practices that are not mandatory.