Information Assurance 2 Flashcards
The act of protecting data
from being observed by any
unauthorized persons.
CONFIDENTIALITY
The act of maintaining and
assuring the accuracy and
completeness of data over
its entire lifecycle
INTEGRITY
The act in which Information is accessible by
authorized users whenever they request the
information
AVAILABILITY
is the collection of tools, policies, security concepts, security safeguards, guidelines, risk management approaches, actions,
training, best practices, assurance and technologies that can be used to
protect the cyber environment and organization and user’s assets
Cybersecurity
Is all about protecting data that is found in electronic form.
Cybersecurity
KEY PRINCIPLES OF
INFORMATION SECURITY
- confidentiality
- integrity
- availability
Organization and User’s Assets
- Network
- Services
- Telecommunications
- System/Application
- Personnel/User Domain
- Computing devices
- Infrastructure
Phases of a Security Lifecycle
- identify
- prevent
- detect
- respond
- recover
developing the organisational understanding to manage cybersecurity risk to systems, assets, data and capabilities
IDENTIFY
safeguards to ensure delivery of critical infrastructure services
Prevent
activity to identify the occurrence of a cybersecurity event.
Detect
activities to take action regarding a detected cybersecurity event
RESPOND
maintaining plans for resilience and restoring any capabilities or services impaired due to a cybersecurity event
RECOVER
Disciplines Contributing
To Information Security
- Business
- Economics
- Education
- Law
- Mathematics
- Psychology
appreciating the organisational context in which the protection is required and the importance of security in terms of areas such as maintaining brand reputation, supporting business continuity and minimising business risk.
Business