O'Reilly logo

CompTIA Security+ Study Guide: SY0-401, 6th Edition by Chuck Easttom, Emmett Dulaney

Stay ahead with the world's most comprehensive technology and business learning platform.

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, tutorials, and more.

Start Free Trial

No credit card required

Chapter 1

Measuring and Weighing Risk

THE FOLLOWING COMPTIA SECURITY+ EXAM OBJECTIVES ARE COVERED IN THIS CHAPTER:

images 2.1 Explain the importance of risk related concepts.

  • Control types: Technical; Management; Operational
  • False positives
  • False negatives
  • Importance of policies in reducing risk: privacy policy; acceptable use; security policy; mandatory vacations; job rotation; separation of duties; least privilege
  • Risk calculation: likelihood; ALE; impact; SLE; ARO; MTTR; MTTF; MTBF
  • Quantitative vs. qualitative
  • Vulnerabilities
  • Threat vectors
  • Probability/threat likelihood
  • Risk-avoidance, transference, acceptance, mitigation, and deterrence
  • Risks associated ...

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, interactive tutorials, and more.

Start Free Trial

No credit card required