- Information
- AI Chat
Was this document helpful?
Information Security
Subject: Information Technology
362 Documents
Students shared 362 documents in this course
Degree:
FET
Was this document helpful?
Information Security: The Ultimate
Guide
What is Information Security (InfoSec)?
Information security (sometimes referred to as InfoSec) covers the tools and
processes that organizations use to protect information. This includes policy
settings that prevent unauthorized people from accessing business or personal
information. InfoSec is a growing and evolving field that covers a wide range
of fields, from network and infrastructure security to testing and auditing.
Information security protects sensitive information from unauthorized
activities, including inspection, modification, recording, and any disruption or
destruction. The goal is to ensure the safety and privacy of critical data such
as customer account details, financial data or intellectual property.
The consequences of security incidents include theft of private information,
data tampering, and data deletion. Attacks can disrupt work processes and
damage a company’s reputation, and also have a tangible cost.
Organizations must allocate funds for security and ensure that they are ready
to detect, respond to, and proactively prevent, attacks such
as phishing, malware, viruses, malicious insiders, and ransomware.
Whitepaper: Meeting Data Security Challenges in the Age of Digital
Transformation.
What are the 3 Principles of Information Security?
The basic tenets of information security are confidentiality, integrity and
availability. Every element of the information security program must be
designed to implement one or more of these principles. Together they are
called the CIA Triad.
Confidentiality
Confidentiality measures are designed to prevent unauthorized disclosure of
information. The purpose of the confidentiality principle is to keep personal