Foundations of Information Security - Topic 1 Vocabulary

0.0(0)
Studied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/23

flashcard set

Earn XP

Description and Tags

This flashcard set covers the foundational vocabulary of Information Security, including the distinctions between InfoSec, Cybersecurity, and IA, historical milestones, the CIA Triad, the AAA framework, and common threat categories.

Last updated 9:14 AM on 6/26/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No analytics yet

Send a link to your students to track their progress

24 Terms

1
New cards

Cybersecurity

The protection of internet-connected systems — hardware, software, and data — from cyberattacks and unauthorized access, focused on threats from cyberspace.

2
New cards

Information Security

The safeguarding of information in any form (digital or physical) from unauthorized access, use, disclosure, disruption, modification, or destruction, focusing on the CIA Triad.

3
New cards

Information Assurance (IA)

The practice of managing risks related to the use, processing, storage, and transmission of information, emphasizing policies, risk management, and operational continuity.

4
New cards

Risk Formula

Risk=Threat×Vulnerability×Impact\text{Risk} = \text{Threat} \times \text{Vulnerability} \times \text{Impact}

5
New cards

Atbash Cipher

An ancient Hebrew cipher used around 1900 BC.

6
New cards

Caesar Cipher

An ancient Roman cipher dating back to 50 BC.

7
New cards

DES (Data Encryption Standard)

A formalized cryptography standard published in 1977.

8
New cards

Morris Worm

The first major internet worm, which appeared in 1988.

9
New cards

ILOVEYOU Worm

An early social engineering mass attack in 2000 that resulted in 50M+ infections and $10B damages.

10
New cards

ISO/IEC 27001

An international standard for Information Security Management Systems (ISMS) introduced in 2003.

11
New cards

Stuxnet

The first known state-sponsored cyberweapon, identified in 2010, which targeted industrial control systems in Iran.

12
New cards

WannaCry / NotPetya

Major ransomware attacks in 2017 that crippled hospitals, banks, and critical infrastructure worldwide.

13
New cards

Confidentiality

A core component of the CIA Triad ensuring that information is accessible only to those authorized to access it.

14
New cards

Integrity

A core component of the CIA Triad safeguarding the accuracy and completeness of information and processing methods.

15
New cards

Availability

A core component of the CIA Triad ensuring authorized users have reliable and timely access to information and resources.

16
New cards

Authentication

The process of verifying the identity of a user, process, or device before granting access (e.g., passwords, smart cards, or biometrics).

17
New cards

Authorization

Determining what an authenticated entity is allowed to do within a system, often using Role-Based Access Control (RBAC).

18
New cards

Accounting (Auditing)

Tracking and recording user activities for audit trails, compliance, forensics, and non-repudiation.

19
New cards

Non-Repudiation

Ensuring a party cannot deny the authenticity of their actions or communications, achieved via digital signatures and audit logs.

20
New cards

RA 10173 (DPA)

The Philippine Data Privacy Act, a legal framework governing the protection of personal information.

21
New cards

Incident Response

A structured approach to handling security breaches consisting of Preparation, Detection, Containment, Eradication, Recovery, and Lessons Learned.

22
New cards

Malware

Malicious software including viruses, worms, trojans, ransomware, and spyware that can affect all three CIA components.

23
New cards

Phishing

A form of social engineering (including spear phishing and vishing) that primarily affects Confidentiality.

24
New cards

Zero-Day Exploits

The exploitation of unpatched vulnerabilities before a vendor fix is available, primarily affecting Integrity and Availability.