1/13
Module 1: Objectives - 1. Define information security and explain the principles, 2. identify threat actors and their motivations, 3, Describe how attacks occur and the impact of attacks, 4. List various information security resources.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai | Chat |
|---|
No analytics yet
Send a link to your students to track their progress
Understanding Security
Security is the state of being free from danger: Measures taken to ensure Security. As Security is increased, convenience is (often) decreased.
Principles of Security
Confidentiality: Ensures that only approved individuals may access information
Integrity: Ensures that information is correct and unaltered.
Availability: Ensures that information is accessible to authorized users.
Principles of Security Part 2: Access to Information
Authentication: Act of ensuring a user’s credentials as authentic
Authorization: Grants permission for a user to take a particular action
Accounting: Creates a record of who, what, and when a person accesses network resources.
Principles of Security Part 3: Security Control
Deterrent Controls
Preventive Controls
Detective Controls
Compensating Controls
Corrective Controls
Directive Controls
Cybersecurity vs. Information Security
Cybersecurity: Range of Practices, Processes, and Technologies to protect devices, networks, and programs that process and store data in an electronic form
Information Security: Protects processed data that is essential in an enterprise environment
Threat Actors and Motivations:
Threat Actor: An individual or entity responsible for attacks, “Attacker”.
Unskilled Attackers
Shadow IT
Organized Crime
Insiders
Hacktivists
Nation- State Actors
Financial Crime:
Individual Users
Enterprises
Governments
Unskilled Attackers
Attackers who lack technical knowledge. Use Easy-Use attack tools that can be purchased. Motivation is usually data exfiltration or service disruption
Shadow IT
The Process of Bypassing Corporate Approval for technology purchases. Motivation is often ethical, but weakens security.
Organized Crime
Organized Crime is a close-knit group of highly- centralized enterprises set up for the purpose of engaging in illegal activities. Moved into cyberattacks, less risky and more rewarding than traditional crime. Motivated by financial gain generally
Insider Threats
Another threat comes from a company’s own employees, contractors, and business partners called insiders. Motivated by revenge or blackmail. Attacks from insider threats that are hard to recognize.
Hacktivists
Groups or individuals that are strongly motivated by ideology, principles or beliefs. Ranging from making statements, to retaliate ( for actions against them), and to disrupt or cause chaos.
Nation- State Actors
Attackers who are employed by the Government. Involved in year long intrusion campaigns that target sensitive economic, proprietary, or national security information.
Advanced Persistent Threat (APT): Use innovative attack tools that silently extract data over an extended period of time.
Other Actors
Competitors: Launch attacks against opponent’s system to steal classified information
Brokers: Sell their knowledge of a weakness to other attackers or governments
CyberTerrorists: Attacks a Nation’s network and computer infrastucture to cause disruption and panic among citizens.
Threat Vectors and Attack Surfaces Part 1: