Information Security Maintenance and Digital Forensics

0.0(0)
studied byStudied by 0 people
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
Card Sorting

1/11

flashcard set

Earn XP

Description and Tags

Flashcards covering the maintenance of information security programs, security management models, monitoring factors, digital forensics, and legal aspects.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

12 Terms

1
New cards

Why is ongoing maintenance of an information security program needed?

New cyber threats appear constantly, legal and regulatory requirements change, and organizational changes necessitate updates to the security program.

2
New cards

What are some popular security management models?

The National Institute of Standards and Technology (NIST) Cybersecurity Framework, ISO/IEC 27001, and COBIT.

3
New cards

What are the key elements of a full maintenance program?

Assessment, Implementation, Monitoring, and Review.

4
New cards

What external factors should be monitored?

New threats and vulnerabilities, and changes in laws or regulations.

5
New cards

What internal factors should be monitored?

Staff behavior or mistakes, and new systems or business changes.

6
New cards

What are key components of maintaining information security?

Software updates, incident response planning and testing, and staff training.

7
New cards

Why is digital forensics used?

To investigate digital misconduct and perform root cause analysis.

8
New cards

What are the two approaches to digital forensics?

Protect and Forget (focus on fixing issues) and Apprehend and Prosecute (focus on finding and punishing the attacker).

9
New cards

What are the steps in the digital forensic process?

Identify, collect, protect, examine, and share the results related to digital evidence.

10
New cards

What should be the focus when managing digital forensics?

The right team, good tools, following the law, and continuous improvement.

11
New cards

What is an affidavit in digital forensics?

A sworn written statement by an investigator explaining the facts, needed evidence, and its location.

12
New cards

What is a search warrant?

Official permission to search a location and take digital evidence, authorized by someone like a judge.