Confidentiality Flashcards
SECTION 4
■ Refers to the protection of information from unauthorized access and disclosure
■ Ensure that private or sensitive information is not available or disclosed to
unauthorized individuals, entities, or processes
Confidentiality
■ To protect personal privacy
■ To maintain a business advantage
■ To achieve regulatory compliance
3 main important reasons for confidentiality
■ Encryption■ Access Controls■ Data Masking■ Physical Security Measures■ Training and Awareness
5 basic methods to ensure confidentiality
● Process of converting data into a code to prevent unauthorized access
■ Encryption
● By setting up strong user permissions, you ensure that only authorized
personnel can access certain types data
■ Access Controls
● Method that involves obscuring specific data within a database to make it
inaccessible for unauthorized users while retaining the real data’s
authenticity and use for authorized users
■ Data Masking
● Ensure confidentiality for both physical types of data, such as paper
records stored in a filing cabinet, and for digital information contained on
servers and workstations
■ Physical Security Measures
● Conduct regular training on the security awareness best practices that
employees can use to protect their organization’s sensitive data
■ Training and Awareness