Sy0 601 21
Sy0 601 21
Sy0 601 21
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 2
Syllabus Objectives Covered
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 3
Physical Security Controls
• Authentication
• Create access lists and identification mechanisms to allow approved persons
through barriers
• Authorization
• Create barriers around a resource so that access can be controlled through
defined entry and exit points
• Accounting
• Keep a record of when entry/exit points are used and detect security breaches
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 4
Site Layout, Fencing, and Lighting
• Site layout
• Zone-based design to accommodate traffic flows and surveillance
• Signage
• Industrial camouflage
• Barricades and entry/exit points
• Bollards
• Fencing
• Lighting
• Make staff feel secure
• Assist surveillance
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 5
Gateways and Locks
• Lock types
• Physical (conventional/deadbolt)
• Electronic
• Cipher/combination
• Magnetic swipe card
• Smart card/proximity reader
Images from user macrovector © 123RF.com.
• Biometric
• Access control
vestibules/mantraps and turnstiles
• Cable locks
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 6
Physical Attacks Against Smart Cards and USB
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 7
Alarm and Sensor Systems
• Circuit
• Open or closed
• Detect intrusion through a barrier
• Motion detection
• Radar or infrared
• Detect intrusion in a space
• Noise detection
• Proximity readers
• Duress
• Fixed or mobile
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 8
Security Guards and Cameras
• Security guards
• Police entry points
• Operate surveillance mechanisms
• Respond to alarms
• Remote surveillance and
monitoring
• Video/CCTV
• Motion recognition
• Object detection
Image by Dario Lo Presti © 123RF.com.
• Robot sentries
• Drones/UAV
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 9
Reception Personnel and ID Badges
• Challenge policy
• Reception personnel and visitor logs
• Sign-in/sign-out
• Visitor information
• Two-person integrity/control
• ID badges
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 10
Topic 21B
Explain the Importance of Physical Host Security
Controls
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 11
Syllabus Objectives Covered
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 12
Secure Areas
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 13
Protected Distribution and Faraday Cages
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 14
Heating, Ventilation, Air Conditioning
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 15
Hot and Cold Aisles
Image © 123RF.com.
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 16
Fire Detection and Suppression
• Fire safety
• Fire exits and evacuation procedures
• Fire-resistant building design
• Smoke/flame detectors/alarms
• Personal fire extinguishers
• Class C for use around electrical hazard
• Sprinklers
• Dry pipe
• Pre-action
• Halon
• Clean Agent
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 17
Secure Data Destruction
• Media sanitization/remnant
removal
• Physical destruction
• Burning/incineration
• Shredding/pulping
• Pulverizing
• Degaussing
Photo by monsterkoi on Pixabay.
• Use of third-parties and
certificates of destruction
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 18
Data Sanitization Tools
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 19
Lesson 21
Summary
CompTIA Security+ Lesson 21 | Copyright © 2020 CompTIA Properties, LLC. All Rights Reserved. | CompTIA.org 20