Security+ Lesson 1: Fundamental Security Concepts

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/15

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 5:04 PM on 8/11/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

16 Terms

1
New cards

What is the CIA triad?

Confidentiality, Integrity, and Availability

2
New cards

What is Non-repudiation?

Non-repudiation means that a person CANNOT deny doing something

3
New cards

What is the definition of Confidentiality as it refers to the CIA triad?

Information can only be read by people who have been explicitly authorized to access it

4
New cards

What is the definition of Integrity as it refers to the CIA triad?

The data is stored and transferred as intended, and any modification is unauthorized unless explicitly authorized through proper channels

5
New cards

What is the definition of Availability as it refers to the CIA triad?

That information is readily accessible to those authorized to view or modify it

6
New cards

What are the 5 functions of the cybersecurity framework developed by NIST?

Identify, protect, detect, respond, and recover

7
New cards

What is a Gap analysis?

A process that identifies how an organization’s security systems differ from those required or recommended by a framework

8
New cards

What is Access Control?

Access control governs how subjects (people) may interact with objects (systems)

9
New cards

What is IAM?

Identity and Access Management

10
New cards

What are the 4 principles of IAM?

Identification, Authentication, Authorization and Accounting

11
New cards

What is Identification (IAM)?

creating an account or ID that uniquely represents the user, device, or process on the network.

12
New cards

What is Authentication (IAM)?

Proving a user is who or what they say they are

13
New cards

What is Authorization (IAM)?

What rights a user has on each resource and enforcing those rights

14
New cards

What is a Security Control?

A security control is designed to give a system or data asset the properties of confidentiality, integrity, availability, and non-repudiation

15
New cards

What are the 4 categories of Security Controls?

Managerial, Operational, Technical, Physical

16
New cards

What are the 3 main Security Control Functional Types?

Preventative, detective, and corrective

<p>Preventative, detective, and corrective</p>