Security standards, compliance regulations and risk management concepts!
1. What does "attack surface" mean?
💡 The attack surface is all the possible entry points an attacker could exploit — reducing it is a core principle of security hardening.
2. What is "threat intelligence"?
💡 Threat intelligence gathers data about attackers, their tools, techniques, and procedures to help organizations proactively defend against threats.
3. What is "ISO 27001"?
💡 ISO 27001 is the international standard specifying requirements for establishing, implementing, and maintaining an information security management system.
4. What is "least privilege principle"?
💡 Least privilege limits user access to only what is needed for their role, minimizing the potential damage from breaches or insider threats.
5. What does "SOC" stand for in cybersecurity?
💡 A SOC is a centralized unit staffed with security analysts who continuously monitor, detect, and respond to cybersecurity threats.
6. What is "business continuity planning" (BCP)?
💡 BCP ensures an organization can continue operating essential functions during disruptions like cyberattacks, natural disasters, or system failures.
7. What is the NIST Cybersecurity Framework?
💡 The NIST CSF provides organizations with a common language and systematic approach to managing and reducing cybersecurity risk.
8. What is "GDPR"?
💡 GDPR is the European Union's comprehensive data protection law giving individuals control over their personal data and imposing obligations on organizations.
9. What is "SIEM" in cybersecurity?
💡 SIEM systems collect, aggregate, and analyze security event data from across an organization to detect threats and support incident response.
10. What does the "CIA triad" stand for in cybersecurity?
💡 The CIA triad represents the three pillars of security: keeping data private (confidentiality), accurate (integrity), and accessible (availability).
11. What is "data classification"?
💡 Data classification categorizes information (public, internal, confidential, top secret) so appropriate security controls can be applied to each level.
12. What is "risk assessment" in cybersecurity?
💡 Risk assessment identifies potential threats, their likelihood, and impact to help organizations prioritize their security investments.
13. What is "vulnerability management"?
💡 Vulnerability management is an ongoing cycle of discovering vulnerabilities through scanning, assessing their risk, and applying patches or mitigations.
14. What is "security awareness training"?
💡 Security awareness training educates all staff about threats like phishing, safe password practices, and how to report suspicious activity.
15. What is "incident response"?
💡 Incident response is a planned approach to addressing security incidents — containing damage, investigating, recovering, and preventing recurrence.