1. Operational security can be enhanced by implementing good employee controls, such as new hire orientation, separation of duties, job rotation, least privilege, and mandatory vacations.
  2. Penetration testing is the process of evaluating the organization's security measures. These tests can be performed in a number of ways, including internal, external, whitebox testing, and blackbox testing.
  3. Clipping levels are the thresholds implemented for certain types of errors or mistakes that are allowed without alarm.

CISSP Exam Cram 2
CISSP Exam Cram 2
ISBN: 078973446X
EAN: 2147483647
Year: 2003
Pages: 204
Authors: Michael Gregg
