6.1 - Principles of Information Security Flashcards

1
Q

What is confidentiality? + Example

A

Information can only be accessed by individuals, groups that have the authorisations to do so.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Give an example of confidentiality

A

Example:
An organisation/staff should use protection measures such as usernames and passwords to ensure that only authorised people can access the sensitive data.

Access levels or permissions can also limit who has access to the data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is integrity

A

Information should be maintained (checking it) so that it is up to date, accurate, complete and fit for purpose.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Example of integrity

A

Staff/organisation should carry out regular maintenance to update information.

e.g confirm contact details once a year)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is availability

A

information is available to the individuals or groups that need to use it. It should only be available to those who are authorised.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What an example of availability

A

information is available and usable by individuals, groups, or processes that need to use it.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Example of availability

A

staff should have the correct privileges so that they can easily access data when required so that it is available remotely using an internet connection

Data must also be kept safe from unauthorised access. staff should not make additional copies of information which could be lost or stolen

How well did you know this?
1
Not at all
2
3
4
5
Perfectly