Needs of the Many
For a secure information system to function it must have all of the following properties:
 |
Confidentiality
Preserving authorized restrictions on information access and disclosure, including a means for protecting personal privacy and proprietary information. A loss of confidentiality is the unauthorized disclosure of information.
|
 |
Integrity
Guarding against improper information modification or destruction, and includes ensuring information non-repudiation and authenticity. A loss of integrity is the unauthorized modification or destruction of information.
- Non-repudiation services provide assurance of the origin of data to both the receiver and a third party. The objective is to provide evidence to counter denials that the sender participated in a specified transaction.
- An assurance of authenticity is provided using authentication controls, which protect a communication system against acceptance of a fraudulent transmission or simulation by establishing the validity of the information content and the originator. Authentication controls can also be used to verify an individual’s authorization to access specific categories of information.
|
 |
Availability
Ensuring timely and reliable access to, and use of, information. A loss of availability is the disruption of access to, or use of, information or an information system.
|
|