Unit 4 Protocols and Security Frameworks Vocabulary

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/45

flashcard set

Earn XP

Description and Tags

Vocabulary flashcards covering core protocols, security models, ISO/IEC 27001 components, and cybersecurity frameworks.

Last updated 1:56 AM on 9/27/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

46 Terms

1
New cards

ARP

Maps a local IPv4 address to a MAC address.

2
New cards

ARP poisoning

Forged ARP information that redirects local traffic.

3
New cards

DAI

Dynamic ARP Inspection validates ARP messages against trusted binding information.

4
New cards

IP

Internet Protocol addresses and routes packets across networks.

5
New cards

ICMP

Carries network control and diagnostic messages.

6
New cards

NAT

Translates addresses between networks.

7
New cards

IPsec

A suite protecting traffic at the IP layer.

8
New cards

ESP

IPsec protocol 50, commonly providing encryption plus integrity/authentication.

9
New cards

AH

IPsec protocol 51, providing integrity/authentication without payload encryption.

10
New cards

TCP

Connection-oriented transport with ordered, reliable delivery.

11
New cards

UDP

Connectionless transport with low overhead and no delivery guarantee.

12
New cards

Port

A number identifying a service endpoint on a host.

13
New cards

DNSSEC

Authenticates DNS data using signatures; it does not encrypt DNS queries.

14
New cards

NIST CSF

NIST CSF 2.0 organizes cybersecurity outcomes into Govern, Identify, Protect, Detect, Respond, and Recover.

15
New cards

Cyber Killchain

A staged model of attack progression from reconnaissance through actions on objectives.

16
New cards

MITRE ATT&CK

A knowledge base of adversary tactics and techniques.

17
New cards

ISO/IEC 27001:2022

Requirements for establishing, implementing, maintaining, and continually improving an information security management system (ISMS).

18
New cards

ISMS scope

The boundaries and applicability of the management system, set with the organization's context, interested parties, and interfaces in mind.

19
New cards

Statement of Applicability (SoA)

A record of necessary controls, why they are included, whether they are implemented, and why any Annex A controls are excluded.

20
New cards

Annex A

The 2022 standard's reference set of 93 possible controls in organizational, people, physical, and technological groups.

21
New cards

Risk owner

The person or role assigned responsibility for a specific information security risk.

22
New cards

Residual risk

The risk that remains after the selected treatment and controls.

23
New cards

COBIT

ISACA's framework for governing and managing enterprise information and technology.

24
New cards

CIS Controls

A prioritized set of cybersecurity safeguards focused on practical defensive actions.

25
New cards

Regulatory obligation

A binding legal or regulatory requirement that applies because of jurisdiction, industry, data, or organizational status.

26
New cards
Protocol
A set of rules for how systems communicate.
27
New cards
DNS
Translates a domain name into information such as an IP address.
28
New cards
DHCP
Automatically supplies devices with IP configuration, such as an address, gateway, and DNS server.
29
New cards
HTTP vs. HTTPS
HTTPS carries HTTP over TLS, protecting the connection with encryption and integrity checks.
30
New cards
TLS
A protocol that protects data in transit and can authenticate the server.
31
New cards
SSH vs. Telnet
Both allow remote command access; SSH protects the connection, while Telnet sends it without that protection.
32
New cards
ARP vs. DNS
ARP finds a MAC address for a local IPv4 address; DNS resolves a name such as example.com.
33
New cards
NAT vs. encryption
NAT translates addresses. It does not make traffic confidential.
34
New cards
TCP/IP layer sequence
Network access, internet, transport, application.
35
New cards
Which layer handles IP routing?
Internet layer.
36
New cards
Which layer handles TCP and UDP?
Transport layer.
37
New cards
Which layer includes DNS and HTTP?
Application layer.
38
New cards
What are TCP 22, 23, 80, and 443?
SSH, Telnet, HTTP, and HTTPS, respectively.
39
New cards
What are port 53 and UDP 67/68?
DNS uses port 53; DHCP uses UDP 67 and 68.
40
New cards
What are ports 389, 636, and 3389?
LDAP, LDAPS, and RDP, respectively.
41
New cards
IP protocol number vs. port number
AH 51 and ESP 50 are IP protocol numbers. They are not TCP or UDP ports.
42
New cards
A host ignores ping, but its website loads. Is it offline?
No. ICMP echo may be blocked while the web service remains reachable.
43
New cards
Cyber Killchain stages
Reconnaissance, weaponization, delivery, exploitation, installation, command and control, actions on objectives.
44
New cards
NIST CSF vs. Cyber Killchain vs. MITRE ATT&CK
NIST CSF organizes defensive outcomes; Killchain models attack progression; ATT&CK catalogs observed attacker behavior.
45
New cards
ISO 27001 vs. CIS Controls
ISO 27001 sets requirements for an ISMS; CIS Controls provide practical, prioritized safeguards.
46
New cards
COBIT vs. ISO 27001
COBIT addresses governance and management of enterprise information and technology; ISO 27001 specifies requirements for an information security management system.