Explore tens of thousands of sets crafted by our community.
Common Security Frameworks
8
Flashcards
0/8
PCI DSS
Purpose: To secure credit and debit card transactions against data theft and fraud. Key Elements: Secure network, cardholder data protection, vulnerability management, access control measures, network monitoring and testing, information security policy.
ISO/IEC 27001
Purpose: To provide requirements for an information security management system (ISMS), aiding organizations in managing the security of assets such as financial information, intellectual property, and employee details. Key Elements: Risk assessment, risk treatment, security controls.
CIS Controls
Purpose: To provide a prioritized set of actions to protect organizations and data from known cyber attack vectors. Key Elements: Basic CIS Controls, Foundational CIS Controls, Organizational CIS Controls.
COBIT
Purpose: To provide a comprehensive framework that assists enterprises in achieving their objectives for the governance and management of enterprise IT. Key Elements: Management objectives, Process domains, RACI (Responsible, Accountable, Consulted, Informed) charts.
SOC 2
Purpose: To assure clients of the security, availability, processing integrity, confidentiality, or privacy of their information stored in the cloud. Key Elements: Security, Availability, Processing Integrity, Confidentiality, Privacy.
NIST Cybersecurity Framework (CSF)
Purpose: To offer a policy framework of computer security guidance for how private sector organizations can assess and improve their ability to prevent, detect, and respond to cyber attacks. Key Elements: Identify, Protect, Detect, Respond, Recover.
GDPR
Purpose: To protect personal data and enhance the privacy rights of individuals within the European Union. Key Elements: Data protection principles, rights of the individual, data controller and processor obligations.
HIPAA Security Rule
Purpose: To ensure the protection of patients' medical records and other personal health information. Key Elements: Administrative, physical, and technical safeguards.
© Hypatia.Tech. 2024 All rights reserved.