A system of ranking vulnerabilities that are discovered based on pre-defined metrics.
Card 82
Question
Common Weakness Enumeration (CWE)
Answer
SCAP component; an identification scheme for design flaws in the development of software that can lead to vulnerabilities.
Card 83
Question
Communications Assistance for Law Enforcement Act (CALEA) of 1994
Answer
Act that requires telecommunications carriers and manufacturers of telecommunications equipment to modify and design their equipment, facilities, and services to ensure that they have built-in surveillance capabilities.
Card 84
Question
community cloud
Answer
A cloud deployment model in which the cloud infrastructure is shared among several organizations from a specific group with common computing needs.
Card 85
Question
compensating control
Answer
A type of control that is applied to mitigate the impact or likelihood of an attack; also called a countermeasure.
Card 86
Question
complex password
Answer
A type of password that includes a mixture of upper- and lowercase letters, numbers, and special characters.
Card 87
Question
Computer Fraud and Abuse Act (CFAA)
Answer
Affects any entities that engage in hacking of “protected computers,” as defined in the act.
Card 88
Question
Computer Security Act of 1987
Answer
The first law to require a formal computer security plan. It was written to protect and defend the sensitive information in the federal government systems. Superseded in 2002 by the Federal Information Security Management Act (FISMA).
Card 89
Question
confidence level
Answer
In the context of intelligence sources, a description of the perceived integrity of any particular data.
Card 90
Question
Confidentiality (C)
Answer
CVSS base metric that describes the information disclosure that may occur if the vulnerability is exploited.
Card 91
Question
configuration baseline
Answer
A floor or minimum standard that is required.
Card 92
Question
configuration lockdown
Answer
Prevents any changes to the configuration of a device, even by users who formerly had the right to configure the device.
Card 93
Question
containerization
Answer
Server virtualization technique in which the kernel allows for multiple isolated user space instances.
Card 94
Question
contamination
Answer
Intermingling or mixing of data of one sensitivity or need-toknow level with that of another.
Card 95
Question
Content Scrambling System (CSS)
Answer
Uses encryption to enforce playback and region restrictions on DVDs.
Card 96
Question
continuous deployment/delivery
Answer
Method to make sure that you can release new changes to your customers quickly in a sustainable way. Continuous deployment goes one step further with every change that passes all stages of your production pipeline being released to your customers.
Card 97
Question
continuous integration
Answer
Software development practice whereby the work of multiple individuals is combined a number of times a day.
Card 98
Question
control plane
Answer
Network architecture plane that carries signaling traffic originating from or destined for a router. This is the information that enables routers to share information and build routing tables.
Card 99
Question
Controller Area Network (CAN bus)
Answer
Designed to allow vehicle microcontrollers and devices to communicate with each other’s applications without a host computer.
Card 100
Question
copyright
Answer
Legal protection that ensures that a work that is authored is protected from any form of reproduction or use without the consent of the copyright holder.
How to use this set
Read the preview and check whether the content and answers suit your learning goal. You can add the public set to your sets to study it. Your account shows the available actions.