What is Information Security
What is Information Security
Organizations must allocate funds for security and ensure that they
are ready to detect, respond to, and proactively prevent, attacks
such as phishing, malware, viruses, malicious insiders,
and ransomware.
Confidentiality
Confidentiality measures are designed to prevent unauthorized
disclosure of information. The purpose of the confidentiality principle
is to keep personal information private and to ensure that it is
visible and accessible only to those individuals who own it or need it
to perform their organizational functions.
Integrity
Availability
Social Engineering
Lack of Encryption
Security Misconfiguration
Active Attack
Passive Attack
In a passive attack, an attacker monitors, monitors a system and
illicitly copies information without altering it. They then use this
information to disrupt networks or compromise target systems.
The most known privacy law in the EU is the General Data Protection
Regulation (GDPR). This regulation covers the collection, use,
storage, security and transmission of data related to EU residents.