ITEC85 - Planning for Security (Security Models and Frameworks)

0.0(0)
Studied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/33

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 8:34 PM on 4/2/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No analytics yet

Send a link to your students to track their progress

34 Terms

1
New cards

Blueprint, Compliance, Common Language

Why Use a Framework?

2
New cards

Blueprint

It provides a proven roadmap. Don't reinvent the wheel.

3
New cards

Compliance

Many laws/regulations require adherence to a standard (e.g., banks must follow ISO or NIST).

4
New cards

Common Language

Allows security professionals globally to speak the same terminology.

5
New cards

- ISO 27001

- ISO 27002

ISO/IEC 27000 Series

6
New cards

International Organization for Standardization (ISO) + International Electrotechnical Commission (IEC).

ISO/IEC meaning

7
New cards

ISO 27001

The requirements. It defines how to build an Information Security Management System (ISMS). Companies get "Certified" against this.

8
New cards

ISO 27002

The code of practice. It lists the specific controls (e.g., "Use encryption," "Lock the server room").

9
New cards

NIST Cybersecurity Framework (CSF)

Created by the US National Institute of Standards and Technology. Free and widely used.

10
New cards

Identify, Protect, Detect, Respond, Recover

The 5 Core Functions (The Cycle)

11
New cards

Identify

Asset management, Risk assessment (Know what you have).

12
New cards

Protect

Access control, Training, Encryption (Stop the attack).

13
New cards

Detect

Monitoring logs, IDS (See the attack happening).

14
New cards

Respond

Incident response planning (Stop the bleeding).

15
New cards

Recover

Backups, Restoration (Get back to business).

16
New cards

Security Architecture: Defense in Depth

Concept: Security should be layered like a castle (Moat > Wall > Tower > Keep). If one layer fails, the next stops the attacker.

17
New cards

Policy, Physical, Perimeter, Network, Host, Application, Data

Security Architecture: Defense in Depth - The Layers

18
New cards

Policy

The rules.

19
New cards

Physical

Fences, locks, guards.

20
New cards

Perimeter

Firewalls, DMZ (De-Militarized Zone).

21
New cards

Network

Internal segmentation (VLANs), IDS/IPS.

22
New cards

Host

Antivirus, OS patching.

23
New cards

Application

Input validation, secure coding.

24
New cards

Data

Encryption, Hashing.

25
New cards

Education, Training, Awareness

Security Education, Training, and Awareness (SETA)

The "People" layer of the Cube.

26
New cards

Education

University level. Teaches "Why"

(Theory).

27
New cards

Training

Vocational/Job level. Teaches "How" (Skills - e.g., configuring a firewall).

28
New cards

Awareness

Daily level. Reminders (Posters,

Phishing simulations). Keeps security "top of mind."

29
New cards

Firewalls, DMZ (De-Militarized Zone), Proxy Servers

Designing the Security Perimeter

30
New cards

Firewalls

The gatekeepers. Filter traffic based on IP/Port.

31
New cards

DMZ (De-Militarized Zone)

A buffer zone between the Internet (Untrusted) and the Internal Network (Trusted).

32
New cards

Web servers

go in the DMZ.

33
New cards

Database servers

go in the Internal Network (never exposed directly).

34
New cards

Proxy Servers

Act on behalf of users to hide internal IPs.

Explore top flashcards

flashcards
Unit 4 APES
137
Updated 1202d ago
0.0(0)
flashcards
SAT 5 Vocabulary
20
Updated 1151d ago
0.0(0)
flashcards
Unit 13 Vocabulary, Book I
20
Updated 17d ago
0.0(0)
flashcards
MICROBIO B2 U3
52
Updated 705d ago
0.0(0)
flashcards
AP bio penguins unit 3
38
Updated 479d ago
0.0(0)
flashcards
Woordenschat Folder 2 (+ extra)
107
Updated 1207d ago
0.0(0)
flashcards
Lang Final
55
Updated 841d ago
0.0(0)
flashcards
Unit 4 APES
137
Updated 1202d ago
0.0(0)
flashcards
SAT 5 Vocabulary
20
Updated 1151d ago
0.0(0)
flashcards
Unit 13 Vocabulary, Book I
20
Updated 17d ago
0.0(0)
flashcards
MICROBIO B2 U3
52
Updated 705d ago
0.0(0)
flashcards
AP bio penguins unit 3
38
Updated 479d ago
0.0(0)
flashcards
Woordenschat Folder 2 (+ extra)
107
Updated 1207d ago
0.0(0)
flashcards
Lang Final
55
Updated 841d ago
0.0(0)