Security Audits - CompTIA Security+ SY0-401: 2.3
Importance of Auditing
In this section, the speaker discusses the importance of auditing and how it helps to ensure network security.
Double Checking Policies
- Auditing is important to understand what's going on in a network.
- Double checking policies becomes an important part of your policies.
- Things can change rapidly over a short period of time, so auditing is necessary.
Types of Auditing
- Regular auditing is necessary to ensure that everything is working as expected.
- Privilege auditing ensures that people have rights and permissions to the areas they should have.
- Usage auditing allows us to see if people are using technologies in the proper way.
- Process and procedure auditing ensures that we have everything in place for disaster recovery and incident management.
- Administrative auditing ensures that we're documenting things we should be documenting.
Policing Yourself
- You really have to police yourself when it comes to network security.
- Sometimes you need to bring in a third-party to look over what you've done.
Conclusion
In this section, the speaker concludes by emphasizing the importance of regular audits for maintaining network security.
Importance of Regular Audits
- Regular audits help ensure that your network is secure and functioning properly.
- Without regular audits, checks and balances could be missed, leading to potential security breaches.