Cysa+ Domain 4

0.0(0)
studied byStudied by 0 people
0.0(0)
full-widthCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/11

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

12 Terms

1
New cards

Service Level Objectives (SLOs):

Specific metrics, often related to time, that are set by an organization or defined as part of a vendor agreement. (Measuring the time to remediate or patch).

2
New cards

Memorandums of Understanding (MOUs)

Agreements that may contain performance or uptime targets that inhibit systems from being taken offline for timely patching.

3
New cards

Service Level Agreements (SLAs)

Agreements that include terms influencing performance targets and may cause organizations to delay patching.

4
New cards

Root Cause Analysis (RCA)

The process of determining the underlying cause for why an incident or issue occurred.

5
New cards

Lessons Learned

An exercise or analysis conducted after an incident to figure out how to prevent similar future incidents.

6
New cards

Mean Time to Detect (MTTD)

The duration from the initial event of an incident until it was discovered.

7
New cards

Mean Time to Respond (MTTR)

The time from detection of an event to assessing it as an incident and activating the full response process

8
New cards

Write Blockers

Tools used to ensure that a drive connected to a forensic system cannot be written to. (Using a hardware write blocker during drive acquisition ensures that attaching the drive does not result in modifications being made to the source data).

9
New cards

Forensic Image

An exact, bit-for-bit copy of a device or drive, including the contents of "empty" space, unallocated space, and slack space.

10
New cards

Slack Space

The unused space remaining when a file is written that can contain fragments of files previously written to that space.

11
New cards

File Carving

A forensic technique that looks at data on a block-by-block basis to find information like file headers and other indicators of file structure.

12
New cards

Order of Volatility

A ranking of how easy data is to lose, which dictates the order in which data should be acquired during a forensic investigation