Security Objectives Flashcards
are goals and constraints that affect the confidentiality, integrity, and availability of your data and application
Security objectives
Also known as data confidentiality, this property means that information is not made available or disclosed to unauthorized individuals, entities, or processes.
Confidentiality
ensures that data (both stored and is transmitted packets) and programs are changed only in a specified and authorized manner.
Data Integrity
ensures that a system performs its intended function in an unimpaired manner, free from deliberate or inadvertent unauthorized manipulation of the system
System integrity
ensures that systems work promptly and the service is not denied to authorized users.
Availability
The property of being genuine and being able to be verified and trusted; confidence in the validity of a transmission, a message, or a message originator.
This means verifying that users are who they say they are and that each input arriving at the system came from a trusted source
Authenticity
The security goal that generates the requirement for actions of an entity to be traced uniquely to that entity.
This supports nonrepudiation, deterrence, fault isolation, intrusion detection and prevention, and after-action recovery and legal action.
Accountability