What is Asset Value?
Asset Value is not always a set number there is also other factors
What is (DRP) and how is it related to Business Continuity
What is Disaster recovery plan (DRP)
What is a (NDA)?
What is Nondisclosure Agreement (NDA)
What is the GDPR?
What is the General Data Protection Regulation (GDPR)?
What is Metasploit?
Metasploit is an open-source penetrating framework used by security engineers as a penetration testing system and a development platform that allows to create security tools and exploits
Describe Internal vs External risk types?
What is inside of the company vs outside of the company
What is (SLE)?
What is Single Loss Expectancy (SLE)
What is (MTBF)?
What is Mean time between failures (MTBF)
What is a (MOU)?
What is a Memorandum of understanding (MOU)?
What is the (PCI DSS)?
What is the Payment Card Industry Data Security Standard (PCI DSS)?
John the Ripper and Cain & Able are examples of what?
What are Password hacking tools
What are the two Risk assessment types?
What are the two Risk assessment types
- Qualitative
- Quantitative
What is (ALE)?
What is Annualized loss expectancy (ALE)
What is (RTO)?
What is Recovery time objective (RTO)
What is (SLA)?
What is Service level agreement (SLA)?
NIST stands for what?
What is National Institute of Standards
and Technology (NIST)
What is Burp suit used for?
Intercepting HTTP, & HPTTPS traffic
What is a single point of failure?
A Single point of failure is anything that if it is removed will cause a catastrophic occurrence. One person doing to many roles, one security point for many entry points, one essential device to a network.
What is (ARO)?
What is Annualized rate of occurrence (ARO)
What is (MTTR)?
What is Mean time to repair (MTTR)?
What is a (BPA)?
What is a Business partnership agreement (BPA)?
What does (ISO) stand for?
What is International Organization
for Standardization (ISO)
What is Aircrack-ng?
What is Aircrack-ng is a complete suite of tools to assess WiFi network security
What is a Risk register?
What a risk register is, is a living document used to track different types of data elements, most commonly risk factors and risk scenarios.
What comes next SLE x ARO = ?
The ALE is the total cost of an item being replaced
What is (RPO)?
What is Recovery point objective (RPO)?
What is (MSA)?
What is Measurement systems analysis (MSA)?
What is NIST SP 800-35
What is Guide to Information Technology Security Services
Name three basic types of password attacks used?
What is Dictionary, Brute force, Hybrid or Rainbow tables
Describe risk Acceptance, Avoidance, Mitigation, and Transference
What is Acceptance you own it
- Avoidance you choose to not or stop doing something.
- Transference you give this to a third part (insurance, cloud, pay role company)
- Mitigation: you choose to set up redundancies, Policies, etc.