Cybersecurity Skill Cube Explained
Cybersecurity Skill Cube Explained
The term 'hecicero' is a label that describes professionals in cybersecurity who protect the
cyber world. Like the sorcerers of the mystical world, cyber sorcerers are interested
in promoting good and protecting others. John McCumber is one of the first wizards in
cybersecurity. Developed a framework called the McCumber Cube that the wizards of
cybersecurity is used to protect the cyber world. The McCumber cube resembles the Cube of
Rubik.
The first dimension of the cybersecurity skill cube includes the three principles of security.
computer science. Cybersecurity professionals refer to the three principles as the Triad of
CID. The second dimension identifies the three states of information or data. The third dimension of
cube identifies the powers of wizards that provide protection. These powers are the three
categories of mechanisms for cybersecurity measures.
The chapter also analyzes the ISO cybersecurity model. The model represents a framework of
international work to standardize the management of information systems.
The first dimension of the cybersecurity skills cube identifies the objectives to protect
cyber world. The objectives identified in the first dimension are the basic principles of the world
of cybersecurity. These three principles are confidentiality, integrity, and availability. The principles
provide the approach and allow the cyber sorcerer to prioritize actions in the protection of
cyber world.
Data states
The cyber world is a world of data; therefore, cyber wizards focus on the
data protection. The second dimension of the cybersecurity skills cube focuses on
the problems of protecting all states of data in the cyber world. Data has three
possible states:
Data in transit
Stored data
Data in process
The protection of the cyber world requires cybersecurity professionals to explain the
data protection in the three states.
Cybersecurity measures
The third dimension of the cybersecurity skills cube defines the types of powers to which a
sorcerer in cybersecurity seeks to protect the cyber world. The professionals in
cybersecurity must utilize all available powers at their disposal to protect the data of
cyber world.
The cybersecurity skills cube identifies the three types of powers and instruments used to
provide protection. The first type of power includes technologies, devices, and available products
to protect information systems and keep cybercriminals at bay.
cybersecurity professionals have a reputation for mastering technological tools at their
disposal. However, McCumber reminds that technological tools are not sufficient to
defeat cybercriminals. Cybersecurity professionals must also create a
solid defense in establishing the policies, procedures, and guidelines that enable citizens
from the cyber world to stay safe and follow the proper practices. Finally, just like the
in the world of wizards, the citizens of the cyber world must strive to obtain more
knowledge about their world and the dangers that threaten their world. They must continuously seek a
greater knowledge and establish a culture of learning and awareness.
Commercial information is the information that includes everything that represents a risk to the
organization if the public or the competition discovers it. Figure 3 lists this category of
data.
Access control
Access control defines several protection schemes that prevent unauthorized access to a
computer, network, database or other data resources. The concept of AAA involves three services
of security: Authentication, Authorization, and Auditing. These services provide the framework
main to control access.
The first 'A' in AAA stands for authentication. Authentication verifies a user's identity to
prevent unauthorized access. Users verify their identity with a username or an ID.
In addition, users must verify their identity using one of the following methods, as stated
shown in figure 1:
For example, if you go to an ATM to withdraw cash, you need your bank card (something you have) and you need
conocer el PIN. Este también es un ejemplo de autenticación de varios factores. La autenticación de varios
factors require more than one type of authentication. The most popular form of authentication is the use of
passwords.
Authorization The authorization services determine which resources users can access, along with
the operations that users can perform, as shown in Figure 2. Some systems achieve
this with an access control list or ACL. An ACL determines whether a user has certain privileges of
access once the user authenticates. Just because they cannot log into the company network does not
means that I am allowed to use the high-speed color printer. The authorization may also
control when a user has access to a specific resource. For example, employees may have
access to a sales database during working hours, but the system blocks them afterwards
of the schedule.
Accounting tracks user activities, including the sites they have access to.
amount of time they have access to resources and the changes made. For example, a bank does
a tracking of each customer account. An audit of that system can reveal the time and the
amount of all transactions and the employee or the system that executed the transactions. The
cybersecurity audit services work in the same way. The system keeps track
of each data transaction and provides audit results. An administrator can configure the
computer policies, as shown in Figure 3, to enable system auditing.
The concept of AAA is similar to the use of a credit card, as indicated in Figure 4. The card of
credit identifies who uses it and how much the user can spend on it and explains how many elements or
services acquired by the user.
The cybersecurity audit tracks and monitors in real time. Websites like Norse show the
real-time attacks based on data collected as part of an audit or tracking system.
Laws and responsibilities
Confidentiality and privacy seem interchangeable, but from a legal perspective, they have
different meanings. Most privacy data is confidential, but not all data
confidentials are private. Access to confidential information occurs after confirming the
appropriate authorization. Financial institutions, hospitals, medical professionals, studies
Legal entities and companies manage confidential information. Confidential information has status
private. Maintaining confidentiality is more than an ethical duty.
All the laws listed in the figure include a provision to address privacy that begins
with US laws in Figure 1. Figure 2 lists a sample of international efforts.
Most of these laws are a response to the massive growth of data collection.
The growing number of statutes related to privacy creates a huge burden on the
organizations that collect and analyze data. Policies are the best way for an organization
comply with the increasing number of privacy-related laws. The policies allow for
organizations apply rules, procedures, and specific processes when collecting, storing, and sharing
data.
Principle of data integrity
Integrity is the accuracy, consistency, and reliability of data throughout its lifecycle. Another term
For integrity, it is quality. Data undergo various operations such as capture,
storage, retrieval, updating, and transfer. Unauthorized entities must
keep the data unchanged during all these operations.
The methods used to ensure data integrity include the hash function, the
data validation checks, data consistency checks, and controls
of access. Data integrity systems may include one or more of the mentioned methods
previously.
Protecting the integrity of data is a constant challenge for most organizations. The
data integrity loss can make all data resources questionable or
useless.
Integrity verifications
Common hash functions include MD5, SHA-1, SHA-256, and SHA-512. These hash functions use
complex mathematical algorithms. The hash value is simply there for comparison. By
For example, after downloading a file, the user can verify the integrity of the file by comparing
the hash values of the source with which any hash calculator generates.
Authorization determines who has access to an organization's resources based on the need for
information. For example, file permissions and user access controls ensure that
only certain users can modify the data. An administrator can set permissions to only
reading for a file. As a result, a user with access to that file cannot perform any
change.
The principle of availability
The availability of data is the principle used to describe the need to maintain the
availability of information systems and services at all times. Cyber attacks and the
System failures can prevent access to information systems and services. For example, to alter
the availability of competitors' websites when removed can provide an advantage to your rival.
These denial of service (DoS) attacks threaten the availability of the system and prevent
legitimate users have access to and use information systems when necessary.
People use different information systems in their daily lives. Computers and the
Information systems control communications, transportation, and product manufacturing.
The continuous availability of information systems is fundamental to modern life. The term
high availability, describes systems designed to avoid downtime. High availability
availability ensures a level of performance for a period higher than normal. High systems
availability usually includes three design principles (Figure 1):
The objective is the ability to continue functioning in extreme conditions, such as during an attack. A
One of the most popular high availability practices is the practice of five nines. The five nines
they refer to 99.999%. This means that the downtime is less than 5.26 minutes per
year.
Ensure availability
The stored data refers to the saved data. The stored data means that a
type of storage device retains data when no user or process is using it. A
Storage device can be local (on a computing device) or centralized (on the network).
There are several options for storing data.
The Redundant Array of Independent Disks (RAID) uses multiple hard drives in an array, which is a
method to combine multiple disks so that the operating system sees them as a single disk. RAID
provides better performance and better fault tolerance.
Organizations have a difficult task when trying to protect stored data. To improve the
data storage, companies can automate and centralize data backups.
Direct connection storage can be one of the most difficult types of storage.
data in managing and controlling. Direct connection storage is vulnerable to attacks
malicious on the local host. The stored data may also include backup data.
Backups can be manual or automatic. Organizations should limit the types of
data stored in direct connection storage. Specifically, an organization does not
I would store the critical data on direct connection storage devices.
Data transmission involves sending information from one device to another. There are various methods.
to transmit information between devices, including the following:
Transfer network: uses removable media to physically move data from one
computer to another
Wired networks include copper wiring and fiber optic networks. Wired networks can serve
to a local geographical area (local area network) or can cover large distances (wide area networks).
Wireless networks are replacing wired networks. Wireless networks are increasingly
faster and are able to handle more bandwidth. Wireless networks extend the amount
of guest users with mobile devices in the small office and home office (SOHO) and the
business networks.
Wired and wireless networks use packets or data units. The term packet refers to
a unit of data that moves between a source and a destination on the network. Standard protocols such as
the Internet Protocol (IP) and the Hypertext Transfer Protocol (HTTP) define the structure and formation of
data packets. These standards are open source and available to the public. The protection of
the confidentiality, integrity, and availability of transmitted data is one of the responsibilities
most important for a cybersecurity professional.
The protection of transmitted data is one of the most challenging tasks for a professional.
cybersecurity. With the growth of mobile and wireless devices, professionals
Cybersecurity is responsible for protecting massive amounts of data that cross the network daily. The
Cybersecurity professionals must face several challenges when protecting this data: