Cybersecurity Awareness Month

1234567891011121314151617181920
Across
  1. 4. a security control that monitors and filters network traffic, allowing or blocking connections based on defined rules
  2. 6. the acronym for a security method that requires two or more forms of identification before access is granted
  3. 7. malicious software designed to cause harm, disclose information, or compromise the security or stability of a system
  4. 11. part of the CIA triad, ensuring that data remains accurate, complete, and unaltered unless it is intentionally changed by an authorized user
  5. 14. the process of converting readable information into a protected form that can only be read with the correct key or method
  6. 15. an unplanned event which could result in downtime, inappropriate access to data, or other issues that must be contained or resolved
  7. 16. part of the CIA triad, ensuring that data is only accessed by the people, systems, or processes authorized to see it
  8. 17. a bad actor or circumstance that could negatively impact a person, organization, system, or data
  9. 18. the possibility of a bad outcome, comparing the likelihood of it happening with the impact, should it happen
  10. 19. the principles, rights, and regulations that protect people from harm by governing how their personal information is collected, accessed, used, shared, and stored
Down
  1. 1. data [blank]; a key privacy principle involving collecting, using, sharing, and retaining only the information that is necessary for a clear and legitimate purpose
  2. 2. intentional deception or misrepresentation used to obtain money, information, access, services, or another benefit
  3. 3. the tools, policies, and safeguards used to protect data and systems from unauthorized access, misuse, disruption, and breaches
  4. 5. a secret word, phrase, or string of characters used to access an account or system
  5. 8. part of the CIA triad, ensuring that systems and data are accessible when they are needed, without disruption or downtime
  6. 9. a form of social engineering in which someone tries to obtain information or access from you
  7. 10. a weakness or gap in a system, its code, its design, or a process that could be exploited
  8. 12. disguising a message, website, phone number, email address, or other source so that it appears to come from someone or somewhere trusted
  9. 13. the short-form phrase for an authorized attempt to exploit vulnerabilities in a system or feature so they can be identified and fixed
  10. 20. meeting the laws, regulations, standards, contractual commitments, and internal policies that apply to an organization