2.1.C.3In the initial-access phase of an attack, adversaries establish a foothold on the target’s computer, often through social engineering or compromised or weak credentials.Learning objective: Describe the phases of a cyberattack.
5.2.C.7The principle of least privilege is the idea that entities should be given exactly as much access as they need to perform their function and no more.Learning objective: Determine an appropriate access control model to protect applications and data.
5.6.A.1Devices track and log when data are accessed and by whom. The process of recording and monitoring user activities is called accounting. Analysis of these logs can reveal malicious activity when an adversary attempts to access,…Learning objective: Explain how to detect attacks on data.
AP Networking alignment
4.1.A.3When confidentiality is compromised, systems are vulnerable to having sensitive data exposed or stolen. A breach of confidentiality can be identified by: • unauthorized access • network traffic showing exfiltration of…Learning objective: Identify evidence of compromised confidentiality, integrity, or availability.
4.5.B.4Security controls to limit the impact of unauthorized access include: • enforcing strong password policies and account lockout settings • applying the principle of least privilege • implementing segmentation to restrict access…Learning objective: Determine appropriate security controls to limit the impacts of common threats and vulnerabilities in a managed network.
4.6.B.2Monitoring and alerting tools help ensure availability by enabling rapid detection of failures or suspicious activity.Learning objective: Identify ways to improve the reliability and availability of networked systems.