Chapter 6

Mitigating Security Threats

CERTIFICATION OBJECTIVES

6.01     Protecting Data at Rest with Encryption

6.02     Network Service Port Numbers

6.03     Securely Configuring the Windows Registry

6.04     Windows and Linux Update Management

QUESTIONS

Threat mitigation techniques help harden the computing environment by reducing the attack surface. Threats include unauthorized access to sensitive data and standard network service ports exposed to the Internet.

Disk encryption protects sensitive data at rest by providing confidentiality; only the possessors of the correct decryption passphrase or key can decrypt encrypted data. Disabling unused network services and changing default listening port numbers make it more difficult for attackers ...

Get CompTIA Security+ Certification Practice Exams, Fourth Edition (Exam SY0-601), 4th Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.