Security Controls Flashcards

(10 cards)

1
Q

Technical Controls

A

Technical controls → safeguards implemented using technology such as firewalls, intrusion detection systems, antivirus software, encryption, and multifactor authentication.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Managerial Controls

A

Managerial controls → administrative safeguards focused on policies, procedures, risk management, and security governance such as security policies and risk assessments.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Operational Controls

A

Operational controls → safeguards implemented through people and processes including security training, incident response procedures, and change management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Physical Controls

A

Physical controls → safeguards that protect physical assets such as locks, fences, security guards, cameras, and access control systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Preventive Control Types

A

Preventive control types → controls that stop security incidents before they occur, including technical firewalls, managerial security policies, operational training, and physical locks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Deterrent Control Type

A

Deterrent control type → controls that discourage attacks such as warning banners, visible cameras, security guards, and posted policies.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Detective Control Type

A

Detective control type → controls that identify incidents after they occur including intrusion detection systems, log monitoring, audits, and security cameras.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Corrective Control Type

A

Corrective control type → controls that reduce the impact of incidents such as system patching, restoring backups, updating firewall rules, and account resets.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Compensating Control Type

A

Compensating control type → alternative controls used when primary controls are not feasible, such as increased monitoring when encryption cannot be implemented.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Directive Control Type

A

Directive control type → controls that guide behavior such as security policies, procedures, standards, and acceptable use policies.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly