6.1 Security principles Flashcards
What are the 3 key principles of data security
Confidentiality
Integrity
Availability
What does confidentiality mean
Information should only be accessed by individuals or groups with correct authorisation
How to uphold confidentiality
Use protection measures like usernames and passwords to ensure only authorised people can access the sensitive data. Tiered levels of access or permissions can also limit who has access to the data
What does integrity mean
Information is maintained so that its up-to-date, correct and fir for purpose
How to uphold integrity
Carry out regular maintenance to update information
What does availability mean
Information is available to the individuals or groups that need to use it. It should only be available to those who are authorised.
How to uphold availability
correct privileges to easily access data when required. E.g. could be stored on the cloud for remote availability. It must also be kept safe from unauthorised access . unneeded copies shouldn’t be made (could be lost or stolen)