官术网_书友最值得收藏!

Information assurance

Information assurance is the act of working with business and IT leadership to ensure that the confidentiality, integrity, and availability requirements for a given asset are fully understood. Those requirements should be fully tested in a test environment prior to being integrated into the production environment, in order to ensure that they are secure and do not cause interoperability issues.

The activities associated with information assurance inform the activities associated with IT security regarding the specific technical controls needed to properly protect a given asset. Requirements are driven by the business/mission owner.

For example, a medical device might be deemed by a business/mission owner to be confidentiality-high, integrity-high, and availability-moderate (because they can revert to old school medical techniques):

Relationship between Information Assurance and IT Security

主站蜘蛛池模板: 甘泉县| 丰城市| 陆川县| 鸡西市| 葫芦岛市| 贵州省| 屯留县| 长宁区| 大庆市| 游戏| 四平市| 台东市| 南木林县| 津南区| 伊宁县| 仙桃市| 永宁县| 安乡县| 松阳县| 石柱| 新野县| 万荣县| 登封市| 东丽区| 崇阳县| 湄潭县| 彭泽县| 澄迈县| 中卫市| 焉耆| 广平县| 辛集市| 名山县| 永州市| 沁水县| 张家口市| 陕西省| 石阡县| 石楼县| 宣汉县| 锦州市|