Security governance principles Flashcards
1
Q
Least Privilege
A
Give users/systems exactly the access they need, no more, no less.
2
Q
Need to know
A
Even if you have access, if you do not need to know, then you should not access the data.
3
Q
Non-repudiation
A
A user can not deny having performed a certain action.