CIST 2601 Module 1 Questions And Answers With
Verified Solutions
A management action, written policy, procedure, guideline, regulation, law or rule of any kind ANS
Administrative Control
Any person or program that attempts to interact with a computer information system in an unauthorized manner
ANS Attacker
Any user (person or program) that posses permission to access a resource ANS Authorized User
The assurance that requested information is available to authorized uses upon request ANS Availability
Confidentiality, integrity and availability; the goals of information security ANS CIA Triad
A collection of computer and network devices connected to one or more networks, generally for the purpose of
fulfilling business functions. Also called IT Infrastructure. ANS Computer Environment
The assurance that information can be accessed and viewed only by authorized users. ANS Confidentiality
A control that repairs the effects of damage from an attack. Corrective controls include virus removal procedure,
firewall table updates and user authorization database updates. ANS Corrective Control
A security strategy that relies on multiple layers of security that require attackers to defeat multiple controls to
access any protected resource. ANS Defense in Depth
A control that detects when an action has occurred. Detective controls include smoke detectors, log monitors and
system audits. ANS Detective Control
An agreement between the software producer and the end user. The EULA addresses issues regarding approved
use and liability. Also called a Software License Agreement. ANS End User License Agreement (EULA)
, A hacker who is, or claims to be, motivated by political or social justice concerns and uses hacking skills to reinforce
his or her chosen position. ANS Hacktivist
The assurance that information can be modified only by authorized users ANS Integrity
An alternate term for technical control ANS Logical Control
Software that is designed to infiltrate a target computer and do something the attacker has instructed it to do
ANS Malicious Software
A device that limits access or otherwise protects a resource, such as a fence, door, lock, or fire extinguisher ANS
Physical Control
A control that stops an action before it occurs. Preventative controls include locked doors, firewall rules, and user
passwords ANS Preventive Control
Any exposure to a threat ANS Risk
A mechanism used to protect information and related assets ANS Security Control
A device or process that limits access to a resource . Examples include user authentication, antivirus software, and
firewalls ANS Technical Control
Any action that could lead to damage or loss ANS Threat
Any user (person or program) that does not posses permission to access a resource ANS Unauthorized User
Any weakness that could allow a threat to be realized ANS Vulnerability
A standalone malicious software program that actively transmits itself, generally over networks, to infect other
computers ANS Worm
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller Nipsey. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $12.49. You're not tied to anything after your purchase.