A comprehensive set of guidelines that address all phases of the software development life cycle (SDLC).
Card 62
Question
carving
Answer
Forensic technique used to identify a file when only fragments of data are available and no file system metadata is available.
Card 63
Question
Cellebrite
Answer
A forensic tool that focuses on collecting evidence from smartphones.
Card 64
Question
certificate authority (CA)
Answer
The entity in a PKI that creates and signs digital certificates, maintains the certificates, and revokes them when necessary.
Card 65
Question
certificate revocation list (CRL)
Answer
A list of expired and revoked certificates.
Card 66
Question
certification
Answer
Evaluation of the technical system components.
Card 67
Question
change management
Answer
Formal process for managing change.
Card 68
Question
characteristic factor authentication
Answer
Authentication based on something the person is.
Card 69
Question
clearing
Answer
Removing data from the media so that it cannot be reconstructed using normal file recovery techniques and tools.
Card 70
Question
click-jacking
Answer
An attack that crafts a transparent page or frame over a legitimatelooking page that entices the user to click something.
Card 71
Question
cloud access security broker (CASB)
Answer
A software layer that operates as a gatekeeper between an organization’s on-premises network and the provider’s cloud environment.
Card 72
Question
COBIT
Answer
Security controls development framework that uses a process model to subdivide IT into four domains.
Card 73
Question
code of conduct/ethics
Answer
Details standards of business conduct.
Card 74
Question
cognitive password
Answer
A type of password that is a piece of information that can be used to verify an individual’s identity.
Card 75
Question
collection
Answer
The step in the intelligence cycle where data searching and organizing occurs.
Card 76
Question
combination password
Answer
A type of password that uses a mix of dictionary words, usually two that are unrelated.
Card 77
Question
commodity malware
Answer
Malware that is widely available for either purchase or by free download. It is not customized or tailored to a specific attack.
Card 78
Question
Common Configuration Enumeration (CCE)
Answer
SCAP component; configuration best practice statements maintained by the National Institute of Standards and Technology (NIST).
Card 79
Question
Common Platform Enumeration (CPE)
Answer
SCAP component; a NIST standardized method of describing methods for describing and classifying operating systems, applications, and hardware devices.
Card 80
Question
Common Vulnerabilities and Exposures (CVE)
Answer
SCAP component; list of vulnerabilities in published operating systems and applications software.
How to use this set
Read the preview and check whether the content and answers suit your learning goal. You can add the public set to your sets to study it. Your account shows the available actions.