O'Reilly logo

CompTIA Security+ Review Guide: Exam SY0-401, 3rd Edition by James M. Stewart

Stay ahead with the world's most comprehensive technology and business learning platform.

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, tutorials, and more.

Start Free Trial

No credit card required

Chapter 2Compliance and Operational Security

CompTIA Security+ exam objectives covered in this chapter include the following:

  1. correct 2.1 Explain the importance of risk-relateda concepts.
    • Control types
      • Technical
      • Management
      • Operational
    • False positives
    • False negatives
    • Importance of policies in reducing risk
      • Privacy policy
      • Acceptable use
      • Security policy
      • Mandatory vacations
      • Job rotation
      • Separation of duties
      • Least privilege
      • Risk calculation
      • Likelihood
      • ALE
      • Impact
      • SLE
      • ARO
      • MTTR
      • MTTF
      • MTBF
    • Quantitative vs. qualitative
    • Vulnerabilities
    • Threat vectors
    • Probability/threat likelihood
    • Risk-avoidance, transference, acceptance, mitigation, ­deterrence
    • Risks associated ...

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, interactive tutorials, and more.

Start Free Trial

No credit card required