官术网_书友最值得收藏!

Information assurance

Information assurance is the act of working with business and IT leadership to ensure that the confidentiality, integrity, and availability requirements for a given asset are fully understood. Those requirements should be fully tested in a test environment prior to being integrated into the production environment, in order to ensure that they are secure and do not cause interoperability issues.

The activities associated with information assurance inform the activities associated with IT security regarding the specific technical controls needed to properly protect a given asset. Requirements are driven by the business/mission owner.

For example, a medical device might be deemed by a business/mission owner to be confidentiality-high, integrity-high, and availability-moderate (because they can revert to old school medical techniques):

Relationship between Information Assurance and IT Security

主站蜘蛛池模板: 柘荣县| 庆元县| 通州市| 武汉市| 获嘉县| 桃源县| 耒阳市| 永昌县| 温宿县| 封开县| 克山县| 永善县| 靖西县| 呼玛县| 安西县| 光山县| 长治市| 册亨县| 广昌县| 大洼县| 图木舒克市| 郎溪县| 灵台县| 六安市| 彰化县| 南宫市| 高州市| 拉孜县| 青州市| 大新县| 清涧县| 阿图什市| 台前县| 贺州市| 钦州市| 随州市| 海伦市| 金寨县| 泰宁县| 威远县| 武隆县|