Course 6 Module 3 Glossary

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/25

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 10:45 PM on 7/19/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

26 Terms

1
New cards

Analysis

The investigation and validation of alerts

2
New cards

Broken chain of custody

Inconsistencies in the collection and logging of evidence in the chain of custody

3
New cards

Business continuity plan (BCP)

A document that outlines the procedures to sustain business operations during and after a significant disruption

4
New cards

Chain of custody

The process of documenting evidence possession and control during an incident lifecycle

5
New cards

Containment

The act of limiting and preventing additional damage caused by an incident

6
New cards

Crowdsourcing

The practice of gathering information using public input and collaboration

7
New cards

Detection

The prompt discovery of security events

8
New cards

Documentation

Any form of recorded content that is used for a specific purpose

9
New cards

Eradication

The complete removal of the incident elements from all affected systems

10
New cards

Final report

Documentation that provides a comprehensive review of an incident

11
New cards

Honeypot

A system or resource created as a decoy vulnerable to attacks with the purpose of attracting potential intruders

12
New cards

Incident response plan

A document that outlines the procedures to take in each step of incident response

13
New cards

Indicators of attack (IoA)

The series of observed events that indicate a real-time incident

14
New cards

Indicators of compromise (IoC)

Observable evidence that suggests signs of a potential security incident

15
New cards

Intrusion detection system (IDS)

An application that monitors system activity and alerts on possible intrusions

16
New cards

Lessons learned meeting

A meeting that includes all involved parties after a major incident

17
New cards

Open-source intelligence (OSINT)

The collection and analysis of information from publicly available sources to generate usable intelligence

18
New cards

Playbook

A manual that provides details about any operational action

19
New cards

Post-incident activity

The process of reviewing an incident to identify areas for improvement during incident handling

20
New cards

Recovery

The process of returning affected systems back to normal operations

21
New cards

Resilience

The ability to prepare for, respond to, and recover from disruptions

22
New cards

Standards

References that inform how to set policies

23
New cards

Threat hunting

The proactive search for threats on a network

24
New cards

Threat intelligence

Evidence-based threat information that provides context about existing or emerging threats

25
New cards

Triage

The prioritizing of incidents according to their level of importance or urgency

26
New cards

VirusTotal

A service that allows anyone to analyze suspicious files, domains, URLs, and IP addresses for malicious content