SEC 530 QUESTIONS AND ANSWERS
Where is the perimeter of a network? - Answers :The host that communicate with the
least resistance.
Compliance is a critical subcomponent of: - Answers :Security
CIST Cyber Security Framework (CSF) Core Functions - Answers :Identify, Protect,
Detect. Respond and Recover
Executive Communicate: - Answers :Mission priorities, avaliable resources, and overall
risk tolerances
Businesses/Process Communicate: - Answers :Input into the risk management process
and collaborates with implementation
Implementation/Operations Communicate: - Answers :Communicates profile
implementation profile
Do preventative controls fail? - Answers :Yes, in the face of a persistent adversary
Purple Teaming - Answers :Red and Blue
Governance - Answers :What is the overall stance on defending against cybersecurity?
Is the focus compliance or defending against APT's?
Operations - Answers :How integrated is cybersecurity staff? Are proactive controls in
place or are they reactive?
Time Based Security - Answers :How long protection works, and how long it takes to
detect and react. P > D + R
Cyber Killchain Countermeasures - Answers :Detect, Deny, Disrupt, Degrade, Decieve
Breakout Point - Answers :The point in which lateral movement first occurs, signaling
the time in which the attack moves to more computers and becomes exponentially more
dangerous.
OODA Loop - Answers :Observe. Orient. Decide. Act. A teaching tool originating from
military training that promotes the use of a constant cycle of learning; in digital
marketing, used to instill the use of hypothesizing, experimentation, data capture and
measurement, and then re-stating a new revised hypothesis based on information
gathered in previous experiments.
Exposure Time - Answers :Exposure = Detection + Reaction
Where is the perimeter of a network? - Answers :The host that communicate with the
least resistance.
Compliance is a critical subcomponent of: - Answers :Security
CIST Cyber Security Framework (CSF) Core Functions - Answers :Identify, Protect,
Detect. Respond and Recover
Executive Communicate: - Answers :Mission priorities, avaliable resources, and overall
risk tolerances
Businesses/Process Communicate: - Answers :Input into the risk management process
and collaborates with implementation
Implementation/Operations Communicate: - Answers :Communicates profile
implementation profile
Do preventative controls fail? - Answers :Yes, in the face of a persistent adversary
Purple Teaming - Answers :Red and Blue
Governance - Answers :What is the overall stance on defending against cybersecurity?
Is the focus compliance or defending against APT's?
Operations - Answers :How integrated is cybersecurity staff? Are proactive controls in
place or are they reactive?
Time Based Security - Answers :How long protection works, and how long it takes to
detect and react. P > D + R
Cyber Killchain Countermeasures - Answers :Detect, Deny, Disrupt, Degrade, Decieve
Breakout Point - Answers :The point in which lateral movement first occurs, signaling
the time in which the attack moves to more computers and becomes exponentially more
dangerous.
OODA Loop - Answers :Observe. Orient. Decide. Act. A teaching tool originating from
military training that promotes the use of a constant cycle of learning; in digital
marketing, used to instill the use of hypothesizing, experimentation, data capture and
measurement, and then re-stating a new revised hypothesis based on information
gathered in previous experiments.
Exposure Time - Answers :Exposure = Detection + Reaction