RSAA Cybersecurity - Puzzle #1

12345678910111213141516171819202122232425
Across
  1. 1. Security Operations Center
  2. 3. Indicator of Attack showing malicious behavior in progress
  3. 5. Process of securing systems by reducing vulnerabilities
  4. 8. Organization behind the ATT&CK Framework
  5. 9. Meeting the requirements of regulations, frameworks, and standards
  6. 11. Security platform that automates response to alerts
  7. 13. Plan of Action and Milestones document used to track remediation efforts
  8. 15. Organization that publishes SP 800-171 and other security standards
  9. 18. Security model based on "never trust, always verify"
  10. 19. Formal evaluation of security controls and compliance
  11. 22. Cybersecurity Maturity Model Certification framework required for many DoD contractors
  12. 23. Protection that makes data unreadable without a key
  13. 25. Process of recording system and security events
Down
  1. 2. Safeguard implemented to reduce security risk
  2. 4. Formal review to verify compliance with security requirements
  3. 6. Process of correcting identified security deficiencies
  4. 7. Controlled Unclassified Information protected under CMMC and NIST requirements
  5. 10. Defense regulation requiring cybersecurity protections for contractors
  6. 12. Notification generated when suspicious activity is detected
  7. 14. Adversary tactics and techniques framework used by defenders
  8. 16. Multi-factor authentication requirement for secure access
  9. 17. Platform that collects and correlates security logs
  10. 20. System Security Plan documenting how security controls are implemented
  11. 21. Documentation provided to prove compliance during an assessment
  12. 24. Indicator of Compromise found during incident investigations