Posts

Showing posts from October, 2023

3.3 - Countermeasures and Prevention

  3.3 - Countermeasu res and prevention     Key Terms:   Bollard – A physical barrier to deter intruders.   Strip-cut shredder – A device that cuts paper into long, thin strips.   Crosscut shredder – A device that cuts paper both horizontally and vertically, turning it into confetti.   Full backup – A backup of every piece of an organisation's data.   Incremental backup – A process that backs up every file that has been changed since the last backup.   Differential backup – A process that backs up ev ery file since the last full backup.     Hiring and Termination   This is the most important policy a business should have. The HR department must complete a background check of each employee and contact references listed. They should also review educational records and request for th e employee to sign an NDA. Finally, they should outline an AUP (acceptable use policy) to determine what the employee can and can’t do. If an e...

3.2 - Physical Security

3.2 - Physical security     Key Terms:   National Institute of Standards and Technology (NIST) - An institute that publishes and standardises security controls and assessment procedures to protect information systems.   Bump key – A key cut to the number nine position with some of the front and shank removed.   Scrubbing – A lock picking method where the internal pins are pushed down with calculated pre ssure.   Lock shim – A thin and stiff piece of metal that is used to ope n a padlock.     Prevention   It is much easier to prevent an attack than to recover from one. Prevention is a way of securing a system to make it harder to access. This can prevent attacks from occurring. Most a ttackers look for easy targets to exploit so, with prevention measures in place, a business will be less of a target.     Detection   If a breach does occur, a business must be able to identify it almost immediately . The business must also fi...