A standard that defines a framework for centralized port-based authentication.
Card 2
Question
acceptable use policy (AUP)
Answer
A policy that is used to inform users of the actions that are allowed and those that are not allowed.
Card 3
Question
accreditation
Answer
Occurs when the adequacy of a system’s overall security is accepted by management.
Card 4
Question
accuracy
Answer
A description of the correctness of the data.
Card 5
Question
active defense
Answer
Process of aligning your incident identification and incident response processes such that there is an element of automation built into your reaction to any specific issue.
Card 6
Question
Active Directory (AD)
Answer
Microsoft implementation of SSO. See also single sign-on (SSO).
Card 7
Question
active enumeration
Answer
The technique of sending packets of some sort to the network and then assessing responses.
Card 8
Question
active vulnerability scanner
Answer
A type of scanner that can take action to block an attack, such as block a dangerous IP address.
Card 9
Question
Advanced Access Content System (AACS)
Answer
Protects Blu-ray and HD DVD content. Hackers have been able to obtain the encryption keys to this system.
Card 10
Question
advanced persistent threat (APT)
Answer
Threat from a highly organized attacker with significant resources that is carried out over a long period of time.
Card 11
Question
Adversary
Answer
Corner of the Diamond Model that describes the intent of the attack.
Card 12
Question
adware
Answer
Malware that monitors browsing habits for the purpose of ad targeting.
Card 13
Question
aggregation
Answer
The process of assembling or compiling units of information at one sensitivity level and having the resultant totality of data being of a higher sensitivity level than the individual components.
Card 14
Question
air gap
Answer
A device with no network connections and all access to the system must be done manually by adding and removing items with a flash drive or other external device.
Card 15
Question
Aircrack-ng
Answer
A set of command-line tools for sniffing and attacking wireless networks.
Card 16
Question
analysis
Answer
The step in the intelligence cycle where data is combed and analyzed to identify relevant pieces of information.
Card 17
Question
annual loss expectancy (ALE)
Answer
The expected risk factor of an annual threat event. Calculated as the single loss expectancy (SLE) times the annualize rate of occurrence (ARO).
Card 18
Question
annualized rate of occurrence (ARO)
Answer
The estimate of how often a given threat might occur annually.
Card 19
Question
anti-tamper technology
Answer
Designed to prevent access to sensitive information and encryption keys on a device.
Card 20
Question
Application log
Answer
Log that focuses on the operation of Windows applications. Events in this log are classified as error, warning, or information, depending on the severity of the event.
How to use this set
Read the preview and check whether the content and answers suit your learning goal. You can add the public set to your sets to study it. Your account shows the available actions.