Domain 1: Security and Risk Management - Control Types
23 important questions on Domain 1: Security and Risk Management - Control Types
What name is oftenly used for administrative controls?
Which 4 examples of administrative controls are there?
2. Risk management
3. Personnel security
4. Training
How are technical controls also being refered to?
- Higher grades + faster learning
- Never study anything twice
- 100% sure, 100% understanding
Which 5 examples of technical controls you can name?
1. Firewalls
2. IDS
3. Encryption
4. Identification and authentication mechanisms
What is meant with physical controls?
What is meant with defense-in-depth?
Why use a multilayered defense systems?
Which 7 examples of physical controls can you name?
2. Locked external doors
3. Closed-circuit TV (CCTV)
4. Security guards / dogs
5. Locked internal doors
6. Locked server room / badges / swipe cards
7. Physically secures computers (cable locks)
Which 6 examples of technical controls can you name?
2. Intrusion Detection System (IDS)
3. Intrusion Prevention Systems (IPS)
4. Antimalware,
5. Access Control lists
6. Encryption, secure protocols, call-back systems, database views, constrained user interfaces
7. Passwords, biometrics, smart cards
How to determine what types of controls that need to be implemented?
How to determine the number of control layers that need to be put in to place?
Which Functionalities can security controls provide?
2. Detective
3. Corrective
4. Deterrent
5. Recovery
6. Compensating
What is meant with preventive controls?
What is meant with detective controls?
What is meant with Corrective controls?
What is meant with Deterrent controls?
What is meant with recovery controls?
What is meant with compensating controls?
When looking at a security structure of an environment, were do you first start?
In what categories falls the administrative, physical and technical controls?
Which 6 examples of preventive administrative controls can you name?
2. Effective hiring practices
3. Pre-employment background checks
4. Controlled termination processes
5. Data classification and labeling
6. Security awareness
What kind of control is a computer image?
Can you describe an example of compensating control?
The question on the page originate from the summary of the following study material:
- A unique study and practice tool
- Never study anything twice again
- Get the grades you hope for
- 100% sure, 100% understanding