Domain 3 - Physical Security MindMap (9 of 9)

Created by Cody

p.1

What is the primary goal of physical security?

Click to see answer

p.1

The primary goal of physical security is the safety of people. People are considered the most valuable asset of any organization, and physical security controls must prioritize their safety above all else.

Click to see question

1 / 40
p.1
Importance of Physical Security

What is the primary goal of physical security?

The primary goal of physical security is the safety of people. People are considered the most valuable asset of any organization, and physical security controls must prioritize their safety above all else.

p.1
3
4
5
6
7
Importance of Physical Security

How does physical security contribute to confidentiality, integrity, and availability?

CIA GoalPhysical Controls (examples)
ConfidentialityAccess control (card readers, locks), mantraps, CCTV for monitoring and deterrence
IntegrityEnvironmental controls (HVAC), tamper detection, clean power (UPS), physical seals and monitored enclosures
AvailabilityRedundant power (UPS, generators), HVAC for cooling, fire detection & suppression, network redundancy
p.1
Importance of Physical Security

What does the expression 'if you can touch the box, you own the box' imply in the context of physical security?

The expression implies that if an attacker can gain physical access to a device, such as a firewall or server, they can easily gain control of it due to built-in bypass controls, like factory reset buttons.

p.2
3
4
Categories of Physical Security Controls

What are the five categories of controls used in physical security?

CategoryDescriptionExample Controls
DeterDiscourages trespassing and theftSignage, lighting, territorial reinforcement
DelaySlows down unauthorized accessLocks, fences, mantraps
DetectIdentifies security incidentsCCTV, motion sensors, glass-break detectors
AssessDetermines attack method and targetSecurity monitoring, video review, incident analysis
RespondRemediates or contains incidentsSecurity personnel, alarms, automated locking
p.2
Layered Defense and Defense in Depth

Why is it important to implement multiple layers of controls in physical security?

Implementing multiple layers of controls is crucial because if only one control is in place and it fails, significant risks can occur. Multiple layers ensure a combination of preventive, detective, and corrective measures, enhancing overall security through the concept of defense in depth.

p.2
Perimeter Security Measures

What is the role of landscaping in physical security?

Landscaping plays a role in physical security by ensuring that foliage around a building is maintained to provide clear sight lines for cameras. This prevents potential attackers from using trees and plants to gain access to the building.

p.2
Perimeter Security Measures

How should grading be managed around a building for security purposes?

Grading should be managed to ensure that the land slopes down and away from the building. This design helps protect the building from flooding, keeping it dry and secure, effectively creating a natural barrier against water intrusion.

p.3
2
CCTV and Motion Detection Systems

What are the primary functions of CCTV in physical security?

CCTV systems serve as a deterrent, detective control, and can be used for monitoring and auditing. They are primarily classified as detective controls.

p.3
CCTV and Motion Detection Systems

How do Passive Infrared Devices function as motion sensors?

Passive Infrared Devices detect infrared light emitted by objects in their field of view. When a warm-bodied mammal enters the area, the increase in infrared light triggers the sensor, detecting movement.

p.3
Perimeter Security Measures

What role does lighting play in physical security?

Lighting is crucial in physical security as it helps deter crime and ensures the safety of individuals by providing visibility in and around buildings.

p.3
4
Access Control Systems and Mantraps

What are the two major types of card reader systems?

TypeOperationTypical Use Cases
ContactCard is swiped or inserted; reads magnetic stripe or contact chipOlder access systems, legacy POS
ContactlessCard or fob is presented near an RFID/NFC reader; reads via radio frequencyModern access control, mobile credentials, high-throughput doors
p.7
Fire Detection Methods

What is the primary function of ionization smoke detectors?

Ionization smoke detectors respond more quickly to flaming or fast fires, making them effective for early detection of such fire types.

p.3
Access Control Systems and Mantraps

What is a mantrap and how does it prevent unauthorized access?

A mantrap consists of two doors with a small space in between. It requires the first door to be closed before the second door can be unlocked, preventing tailgating or piggybacking by unauthorized individuals.

p.3
2
4
Access Control Systems and Mantraps

Why are locks considered a DELAY control in physical security?

Locks are considered a DELAY control because they slow down an attacker, but it is only a matter of time before they can be picked, forced, or broken, allowing entry.

p.4
2
3
Access Control Systems and Mantraps

What are the two broad categories of locks used in physical security?

CategoryExamplesStrengths / Notes
Mechanical LocksKeyed locks, mechanical combination locks, magnetic locksSimple, reliable, no power required; vulnerable to picking/force
Electronic LocksProximity/RFID locks, electronic combination, biometric locksFlexible access control, audit trails, can be integrated with systems; requires power and management
p.4
Access Control Systems and Mantraps

What is a critical factor that determines the security of combination locks?

The complexity of the combination is one of the most important factors that determines the security of combination locks.

p.4
Perimeter Security Measures

What are the two types of sensors used to detect broken glass in windows?

Sensor TypeHow it DetectsTypical Installation
Shock SensorsDetect the shockwave or physical impact transmitted through the glassAttached directly to the glass pane
Glass Break SensorsDetect the sound or vibration pattern of breaking glass (acoustic/seismic)Mounted near windows or as part of alarm systems
p.4
Perimeter Security Measures

Why are windows considered a weak link in the perimeter of a building?

Windows allow natural light but are often vulnerable points in a building's security, making them potential entry points for intruders.

p.4
3
Access Control Systems and Mantraps

What is skimming in the context of physical security?

Skimming is a method where criminals use electronic devices to steal card information from valid transactions, such as recording debit or credit card details at ATMs or Point of Sale machines.

p.5
6
Infrastructure Services: Network, Power, and HVAC

What are the three major infrastructure services critical to the operation of a facility?

ServiceRole / Examples
NetworkConnectivity for systems, monitoring, access control, and communications
PowerProvides clean AC power to equipment; supports UPS and generators for redundancy
HVACHeating, Ventilation, and Air Conditioning; provides cooling, humidity control, and air quality
p.5
Infrastructure Services: Network, Power, and HVAC

What is meant by 'clean power' in the context of power supply?

'Clean power' refers to Alternating Current (AC) power that oscillates at a perfect 60 Hz with no noise or distortion in the line, resembling a perfect sine wave.

p.5
Infrastructure Services: Network, Power, and HVAC

What are the roles of UPS and Generators in providing power?

Backup TypeDurationStrengths / Limitations
UPS (Uninterruptible Power Supply)Instantaneous, short-termProvides immediate clean power during switchover; limited runtime depending on battery capacity
GeneratorsLong-term (hours to days, depending on fuel)Provide sustained power for extended outages; require fuel and regular maintenance
p.5
Infrastructure Services: Network, Power, and HVAC

What is the difference between a blackout and a fault in terms of power outages?

A blackout is a long-term loss of power, while a fault is a momentary loss of power.

p.5
Infrastructure Services: Network, Power, and HVAC

What does power degradation refer to?

IssueDefinition / Effect
BrownoutsIntentional or sustained voltage reduction that can cause equipment malfunction
Sags & DipsShort periods of low voltage that can disrupt sensitive electronics
SurgesMomentary spikes of excessive voltage that can damage equipment
p.6
5
Role of HVAC in Physical Security

What does HVAC stand for and what are its primary functions?

Stands ForPrimary Functions
HVAC (Heating, Ventilation, and Air Conditioning)- Temperature control: cools equipment to safe operating temperatures
  • Humidity control: prevents static and condensation
  • Air quality: filters dust and contaminants for clean air circulation |
p.6
Role of HVAC in Physical Security

What are the ideal temperature and humidity ranges for HVAC systems according to ASHRAE?

According to ASHRAE, the ideal ranges for HVAC systems are:

  • Temperature: Between 18 to 27 degrees Celsius (64.4°F to 80.6°F)
  • Relative Humidity: Between 40% to 60%
p.6
Role of HVAC in Physical Security

What is positive pressurization in the context of HVAC systems?

Positive pressurization is a method where clean, filtered air is blown into a data center at slightly above ambient pressure. This helps to:

  • Prevent dirty air and contaminants from infiltrating through cracks or openings.
  • Maintain a clean environment for sensitive equipment.
p.7
1
Fire Detection Methods

What are the three major types of fire detection systems?

Detector TypeWhat it DetectsUse Case
Flame DetectorsInfrared and/or ultraviolet light from flamesFast detection of open flames in high-risk areas
Smoke DetectorsSmoke particles (ionization for flaming fires; photo-electric for smoldering fires)General-purpose detection for different fire types
Heat DetectorsRapid rise in temperature or a fixed high temperatureUseful where smoke detectors may produce false alarms (dusty/dirty environments)
p.7
Fire Detection Methods

What is the advantage of dual smoke detectors?

Dual smoke detectors combine both ionization and photo-electric technologies, allowing them to respond effectively to both flaming and smoldering fires.

p.7
Fire Detection Methods

How do heat detectors function in fire detection?

Heat detectors, also known as thermal detectors or rate of rise detectors, function by monitoring temperature changes. They detect a rapid rise in temperature, which indicates a potential fire.

p.7
8
9
Fire Suppression Systems

What is the best way to prevent a fire according to the text?

The best way to prevent a fire is to limit or eliminate any combustible materials.

p.8
7
9
Fire Suppression Systems

What are the two major types of fire suppression systems?

The two major types of fire suppression systems are water-based systems and gas-based systems.

p.8
7
9
Fire Suppression Systems

What are the four types of water-based fire suppression systems?

System TypeDescription
Wet-pipe systemsAlways have pressurized water in the pipes; water is discharged immediately when a sprinkler activates.
Dry-pipe systemsPipes are filled with pressurized air or gas; water is held back by a valve and flows only when the system activates, preventing freezing or water damage in unheated areas.
Pre-action systemsRequire a separate detection event to charge the pipes with water, combining elements of wet and dry systems to reduce accidental discharge.
Deluge systemsHave open nozzles and a deluge valve; when triggered by detection, the system releases large volumes of water immediately to inundate the protected area.
p.8
7
9
Fire Suppression Systems

Why are gas-based fire suppression systems justified in data centers?

Gas-based fire suppression systems are justified in data centers because they effectively suppress fires without the risk of water damaging expensive electrical equipment.

p.8
7
9
Fire Suppression Systems

What is the primary function of gas-based fire suppression systems?

Gas-based fire suppression systems primarily function by either displacing oxygen in a room to extinguish the fire or interrupting the chemical exothermic process of fire.

p.8
7
9
Fire Suppression Systems

What are the four major types of gases used in gas-based fire suppression systems?

The four major types of gases used in gas-based fire suppression systems are:

  1. INERGEN
  2. Argonite
  3. FM-200
  4. Aero-K
p.8
7
9
Fire Suppression Systems

Why is Halon not included in the list of gas-based fire suppression agents?

Halon is not included in the list of gas-based fire suppression agents because it has been banned globally due to its environmental impact.

p.9
7
8
Fire Suppression Systems

What are the five different classes of fire extinguishers?

ClassTypical Use/Agents
Class ACommon combustibles (uses Water, foam, dry chemicals)
Class BLiquid fires (uses CO2, foam, dry chemicals)
Class CElectrical fires (uses CO2, dry chemicals)
Class DMetal fires (specific agents for metal fires)
Class KKitchen fires (uses wet chemical agents)
p.9
7
8
Fire Suppression Systems

Why is CO2 considered an excellent fire suppression agent for data centers?

CO2 is considered excellent for data centers because:

  • It is non-corrosive, preventing damage to expensive equipment.
  • It does not leave a residue, making cleanup easier.
  • It does not conduct electricity, ensuring safety around electrical equipment.
  • It is safe for humans when used in appropriate amounts.
p.9
7
8
Fire Suppression Systems

What type of fire does Class C fire extinguishers target?

Class C fire extinguishers are designed to target electrical fires, which can occur in environments like data centers.

Study Smarter, Not Harder
Study Smarter, Not Harder