Key topics: CIA Triad: Confidentiality, Integrity, Availability — the foundational security framework, Risk assessment: Likelihood × Impact matrix, asset identification, threat modeling, Defense in depth: layered security controls across physical, logical, and administrative domains, Physical access controls: badge/keycard systems, biometrics, mantrap/airlock, surveillance cameras, Insider threats: threat indicators, classification of adversaries (malicious vs. negligent), Cyberattack phases (kill-chain model): Reconnaissance, Weaponization, Delivery, Exploitation, Installation, Command and Control, Exfiltration, Evasion, Security control types: preventative, detective, corrective, compensating controls, Environmental threats: HVAC, fire suppression, power redundancy, physical disaster recovery.
Study guide content for this unit is being prepared. Check back soon for complete lesson notes, formula sheets, and worked examples.