ISC2 CC Domain 1: Security Principals

0.0(0)
Studied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/18

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 1:49 AM on 10/6/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

19 Terms

1
New cards

An Asset

is something in need of protection

2
New cards

A Vulnerability

A gap or weakness in protection efforts

3
New cards

A Threat

is something or someone that aims to exploit a vulnerability to thwart protection efforts

4
New cards

Threat Vectors

the technique and approach of the attack

5
New cards

Vulnerability

A gap or weakness in an organization’s protection of valuable assets

6
New cards

Organizations with a presence in multiple jurisdictions must comply with what?

The most restrictive regulations

7
New cards

Who is responsible for identifying risk?

All employees in an organization

8
New cards
<p>What does this photo depict?</p>

What does this photo depict?

Governance

9
New cards

What are 2 examples of regulations and laws?

GDPR and HIPAA

10
New cards

GDPR

General Data Protection Regulation

11
New cards

HIPAA

Health Insurance Portability and Accountability Act

12
New cards

What are 2 examples of standards?

The International Organization for Standardization (ISO) and The National Institute of Standards and Technology (NIST)

13
New cards

What 2 standards involve communication protocols?

The Internet Engineering Task Force (IETF) and The Institute of Electrical and Electronics
Engineers (IEEE)

14
New cards

What is a policy?

A broad but not detailed plan of direction for a specific part of an organization

15
New cards

What do procedures define?

The explicit, repeatable activities necessary to accomplish a specific task or set of tasks

16
New cards

What is the CIA Triad?

Confidentiality, Integrity and Availability

17
New cards

What is the GDPR?

An EU multinational law that regulates how companies handle private data

18
New cards

What are the 3 methods of authentication?

Something you know, Something you are and Something you have

19
New cards

What is PII?

Personal Identifiable Information