Wireless Wonders
Cyber Sleuths
Cloudy Concepts
Security Savvy
Tech Talk
100

Short-range, wireless radio-network-transmission medium normally used to connect two personal devices, such as a mobile phone and a wireless headset.

What is Bluetooth?

100

A test that uses active tools and security utilities to evaluate security by simulating an attack on a system.

What is penetration testing?

100

A cloud service model that provisions application and database services as a platform for development of apps.

What is Platform as a service (PaaS)?

100

Inspecting traffic to locate and block viruses.

What is antivirus?

100

The Linux command for managing file permissions.

What is chmod?

200

Short-range, wireless radio-network-transmission medium normally used to connect two personal devices, such as a mobile phone and a wireless headset.

What is Bluesnarfing?

200

A type of IDS that monitors a computer system for unexpected behavior or drastic changes to the system’s state.

What is host-based intrusion detection (HIDS)?

200

A cloud service model that provisions virtual machines and network infrastructure.

What is Infrastructure as a service (IaaS)?

200

A small unit of supplemental code meant to address either a security problem or a functionality flaw in a software package or operating system.

What are patches?

200

A type of OS that prioritizes deterministic execution of operations to ensure consistent response for time-critical tasks.

What are Real-Time Operating Systems (RTOS)?

300

A wireless network authentication mode where a passphrase-based mechanism is used to allow group authentication to a wireless network. The passphrase is used to derive an encryption key.

What is a pre-shared key (PSK)?

300

The process of investigating, collecting, analyzing, and disseminating information about emerging threats and threat sources.

What is cyber threat intelligence (CTI)?

300

A cloud service model that provisions fully developed application services to users.

What is Software as a service (SaaS)?

300

The process through which changes to the configuration of information systems are implemented as part of the organization’s overall configuration management efforts.

What is change management?

300

A computing environment where multiple independent operating systems can be installed to a single hardware platform and run simultaneously.

What is virtualization?

400

A wireless network authentication mode where the access point acts as pass-through for credentials that are verified by an AAA server.

What is enterprise authentication?

400

A scheme for identifying vulnerabilities developed by MITRE and adopted by NIST.

What is Common Vulnerabilities and Exposures (CVE)?

400

A private network segment made available to a single cloud consumer on a public cloud.

What is a virtual private cloud (VPC)?

400

Endpoint protection that can detect and prevent malicious activity via signature and heuristic pattern matching.

What is host-based intrusion prevention (HIPS)?

400

Provisioning virtual network appliances, such as switches, routers, and firewalls, via VMs and containers.

What is network functions virtualization (NFV)?

500

Standards for authenticating and encrypting access to Wi-Fi networks.

What is Wi-Fi Protected Access (WPA)?

500

Analysis of historical cyberattacks and adversary actions.

What are tactics, techniques, and procedures (TTPs)?

500

Enterprise management software designed to mediate access to cloud services by users across all types of devices.

What is a cloud access security broker (CASB)?

500

A NIST framework that outlines various accepted practices for automating vulnerability scanning.

What is Security Content Automation Protocol (SCAP)?

500

Features and capabilities of a server without needing to perform server administration tasks.

What is Serverless computing?