Flashcard Deck · 20 cards · Public

CompTIA Security+ (SY0-701) - Security Fundamentals

Master core cybersecurity principles for the CompTIA Security+ (SY0-701) exam, covering the CIA triad, cryptography, threat vectors, and incident response. Boost your exam readiness with high-yield concepts and real-world security scenarios.

Cards in this deck

(20 cards)

Preview terms and definitions before starting your study session.

#1
Term
CIA Triad
Definition
The foundational model of information security consisting of Confidentiality (protecting data from unauthorized access), Integrity (ensuring data remains unaltered and accurate), and Availability (ensuring timely and reliable access to data for authorized users).
#2
Term
Non-Repudiation
Definition
A security goal ensuring that a party to a contract or communication cannot deny the authenticity of their signature on a document or the sending of a message that they originated. Achieved using digital signatures and asymmetric encryption.
#3
Term
Zero Trust Architecture (ZTA)
Definition
A cybersecurity strategy built on the principle of 'Never trust, always verify.' It requires strict identity verification and continuous authorization for every user and device attempting to access network resources, regardless of location.
#4
Term
Phishing vs. Spear Phishing vs. Whaling
Definition
  • Phishing: Broad, untargeted emails sent to trick victims into revealing sensitive info.
  • Spear Phishing: Targeted attack directed at specific individuals or organizations using customized context.
  • Whaling: High-profile spear phishing aimed at executives or key decision-makers (CEOs, CFOs).
#5
Term
Vishing vs. Smishing
Definition
  • Vishing (Voice Phishing): Social engineering performed via telephone or VoIP calls.
  • Smishing (SMS Phishing): Social engineering executed through fraudulent text messages containing malicious links or requests.
#6
Term
Tailgating vs. Piggybacking
Definition
  • Tailgating: An unauthorized individual physically follows an authorized person into a secure area without their knowledge.
  • Piggybacking: An unauthorized person enters a secure area with the explicit consent/knowledge of an authorized individual (e.g., holding the door out of courtesy).
#7
Term
Symmetric Encryption
Definition
An encryption method that uses a single shared key for both encryption and decryption. Fast and efficient for large datasets (e.g., AES-256, 3DES). Key distribution is its primary challenge.
#8
Term
Asymmetric Encryption
Definition
An encryption method that uses a key pair: a Public Key (for encryption/verification) and a Private Key (for decryption/signing). Solves key exchange issues but is computationally slower (e.g., RSA, ECC).
Showing 8 of 20 cards in this deck.
Study All Now