Defence in depth Flashcards
What is defence in depth?
Having multiple layers of security so if one fails, there is another behind it for protection
What are the different layers of security?
Physical - limiting access data center
identity and access - MFA or condition based access
perimeter - DDoS to filter large scale attacks
network - network segmentation and network access controls
compute - securing access to virtual machines
application - ensure apps for secure
Data - manage access to business and customer data, encryption of data
What is the CIA triad?
Confidentiality - keeping sensitive data confidential, encryption
integrity - keeping data correct and factual
Availability - data is available to those who need it