CIA TRIAD Flashcards

1
Q

tell me about the CIA TRIAD

A

the fundamentals of security
sometimes referenced as the AIC TRIAD
Confidentiality
Prevent disclosure of information to unauthorized individuals or systems
Integrity
Messages can’t be modified without detection
Availability
systems and networks must be up and running

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

explain confidentiality

A

certain information should only be known to certain people
prevent unauthorized information disclosure
Encryption
encode messages so only certain people can read it
Access controls
selectively restrict access to a resource
Two factor authentication
additional confirmation before information is disclosed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

explain integrity

A

data is stored and transferred as intended
any modification to the data would be identified
Hashing
map data of an arbitrary length to data of a fixed length
Data signatures
mathematical scheme to verify the integrity of data
Certificates
combine with a digital signature to verify an individual
Non-repudiation
provides proof of integrity, can be asserted to be genuine

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

explain availability

A

Information is accessible to authorized users
-Always at your fingertips
Redundancy
-Build services that will always be available
Fault tolerance
-System will continue to run, even when a failure occurs
Patching
-Stability
-Close security holes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly