CISSP Learning: what does the CIA Triple include?
We are always talking about information security management, so what exactly is information security management in charge of? How do we define information security?
Here we will introduce the most basic concept of information security: CIA triple.
C here refers to Confidentiality confidentiality.
The I here refers to Integrity integrity.
The A here refers to Availability availability.
Why is the CIA triple the most basic principle of information security? Because the information security management we do is to ensure the confidentiality, integrity and availability of information. This is a train of thought that runs through the whole information security management. Including in the information security assessment, usually start from these three directions of analysis.
Confidentiality, integrity and availability depend on each other to form an indivisible whole, and the damage of any one of them will affect the whole security system.