Download as pdf or txt
Download as pdf or txt
You are on page 1of 1

Identify & Implement Security Controls

Objectives:

At the end of this episode, I will be able to:

Understand how to identify & implement security controls.

Define the three categories of controls.

Explain the importance of assessing compliance through periodic audit & review.

External Resources:

Identify & Implement Security Controls

The 3 categories of controls:

a. administrative - policy
b. technical / logical - software based
c. physical - guards / guns / gates

isc2-sscp-access_controls.xlsx

Assessing compliance & periodic audit and review:

1. Understand what each kind of activities are engaged in


2. Understand what they can accomplish
3. Understand the risks associated with them

Penetration Tests
Vulnerability Assessments
Security Impact Assessments (SIA)
Privacy Impact Assessments (PIA)

Operational Test & Evaluation activities (OT&E)

You might also like