ISC2 CISSP - Control Types Flashcards
ISC2 CISSP Flashcards

| Front | Back |
| A locked server room is what kind of control? | Physical, Preventive |
| What control class is a security guard? | Physical |
| What control class is role-based access control (RBAC)? | Technical |
| What control type is a backup system? | Recovery |
| What control type is a digital signature? | Technical, Detective |
| What control type is a failover cluster? | Technical, Recovery |
| What control type is a patch management system? | Technical, Corrective |
| What control type is an after-action report? | Administrative, Corrective |
| What control type is an incident response plan? | Administrative, Corrective |
| What control type is disabling unused ports? | Technical, Preventive |
| What control type is security camera footage review? | Administrative, Detective |
| What kind of control is a honeypot? | Technical, Detective |
| What kind of control is an account lockout policy? | Technical, Preventive |
| What kind of control is biometric authentication? | Technical, Preventive |
| What kind of control is implementing a VPN? | Technical, Preventive |
| What kind of control is multi-factor authentication (MFA)? | Technical, Preventive |
| What type of control is a CCTV camera? | Physical, Detective |
| What type of control is a disaster recovery site? | Recovery |
| What type of control is a firewall? | Technical, Preventive |
| What type of control is a motion sensor? | Physical, Detective |
| What type of control is a security audit? | Administrative, Detective |
| What type of control is a warning banner on a login screen? | Administrative, Deterrent |
| What type of control is an intrusion detection system (IDS)? | Technical, Detective |
| What type of control is encryption? | Technical, Preventive |
| What type of control is security awareness training? | Administrative, Deterrent |
About the Flashcards
Flashcards for the ISC2 CISSP exam reinforce your understanding of security control categories that frequently appear on the test. Each card pairs a real-world example-such as firewalls, biometric scanners, or disaster recovery sites-with its corresponding control class and function, helping you quickly recall whether a control is technical, administrative, physical, preventive, detective, or other.
Use this deck to drill essential terminology and grasp why specific safeguards fit particular roles in a security program. By reviewing the distinctions among deterrent banners, corrective patching, recovery solutions, and more, you sharpen the conceptual links the exam loves to probe, making it easier to answer scenario questions under time pressure.
Topics covered in this flashcard deck:
- Security control classes
- Control functional types
- Authentication mechanisms
- Physical security measures
- Incident response & recovery
- Security auditing practices