Misc
Identity Management
Cryptography
PKI
Risk
100

Command line tool for port scanning

GF

NMAP

100

This Protocol is to enable anyone to locate organization, individuals, and other resources in a domain. It is a major part of Active Directory.


TX

LDAP

100

Secures password hash from rainbow table attacks

LM

Salt

100

What key is given to CA to publish in a certificate so that other systems or users can send encrypted data using asymmetric encryption 

SR

Public

100

Type of risk management if you call Jake from State Farm


SF

Transfer the risk 

200

Used to aggregate logs and alert SOC of security events


BB

SIEM 


Security Information and Event Management 

200

This Access Control Model combines the use of Data Confidentiality level with a user clearance level.


AA

MAC

200

Module on motherboard stores Bitlocker encryption keys?


MC

TPM

200

Published list from CA of all revoked certificates. It is not web based.


SJ

CRL

200

Centralized document used in risk management to record and track all identified risks associated with a project, program, or organization

SG

Risk register

300

This tool is designed to distract attackers, keeping them away from the real network and potentially revealing information about themselves.


KL

Honeypot

300

This concept is designed to provide better security by requiring more than a single way to prove you are who you claim to be.


RF

Multifactor Authentication

300

Most current 1 way hashing algorithm


ZB


SHA

300

Types of keys is found in a key escrow?


CJ

Private

300

SLE x ARO=


PD

ALE Annual Loss Expecancy

400

This device is designed to provide caching and URL filtering


JK

Proxy Server

400

Extremely simple form of “Something you Have”. A notification shows up on a mobile device with a simple tap to confirm

YK

Push notifications

400

Asymmetic encrytion for mobile devices such as tablets and smartphones


YM

ECC


Elliptical Curve Cryptography

400

Web based tool would contact the CA to verify revocation?


QC

OCSP   (Online Cert Status Protocol)

400

The average time it takes to repair a serviceable device



YX

MTTR

500

This deployment model is designed to maintain control of mobile devices by assigning employees devices that are owned and controlled by the company but allowing for personal use 

MN

COPE: Company Owned, Personally Enabled


500

This Access Control Model is determined by the owner of the file


OP

DAC

500

What steganography is used for?


RW

Obfuscation

500

Device that issues digital certificates?


DE

CA

500

Verifying the accuracy, reliability, and effectiveness of security controls and is done by a 3rd party


AL

Attestation 

M
e
n
u