CourseNotes
Published on CourseNotes (https://course-notes.org)

Home > Security+ Chapter 1: Organizational Security Flashcards

Security+ Chapter 1: Organizational Security Flashcards

Terms : Hide Images [1]
563748728Due diligencea company identifies the risks to its business, develops and implements strategies for handling the risk, and informs its employees
563748729Due processEveryone held to the same standard; impartial and fair inquiry into violations of organizational policy
563748730Security policypolicies concerning general organizational security including physical access, access control to data, and security through proper organizational structures and data security principles.
563748731Mandatory vacationa policy that requires employees to use their vacations at specific times of year or all of their vacation days allotted for a single year to help detect security issues such as fraud and other internal hacking activities.
563748732Least privilegea security best practice that provides users only access rights they need to perform their job functions.
563748733Job rotationa policy that provides improved security by ensuring no employee retains the same amount of access control or a particular responsibility for a period of time. This prevents internal corruption from employees who would take advantage of their long-term position and security access.
563748734Separation of dutiesCritical responsibilities are separated between several users to prevent corruption; a single individual isn't tasked with high security and high risk responsibilities.
563748735Service Level Agreement (SLA)A contract or an understanding between a supplier of services and the users of those services that the service in question will be available for a certain percentage of time.
563748736Change managementofficial company procedures used to approve changes to the company's networks or communications services.
563748737Incident managementplanned organizational response to incidents. used to quickly contain a problem and recover to normal operations.
563748738Auditsreviews/inspections that ensure your organization's policies are correctly defined, implemented properly, and communicated efficiently to all users.
563748739Data Loss Prevention (DLP)a security concept focused on preventing the loss of data and protecting its confidentiality and privacy.
563748740False positiveA legitimate action that is perceived as a risk or threat.
563748741False negativeAn illegitimate action that is not perceived as a risk or threat.
Powered by Quizlet.com [2]

Source URL:https://course-notes.org/flashcards/security_chapter_1_organizational_security_flashcards#comment-0

Links
[1] https://course-notes.org/javascript%3Avoid%280%29%3B [2] http://quizlet.com/