Using Multiple Controls or Countermeasures for Information Security
In this post I would like to talk about using multiple controls or countermeasures for information security purposes. To begin, consider a c...
Using Multiple Controls or Countermeasures for Information Security
In this post I would like to talk about using multiple controls or countermeasures for information security purposes. To begin, consider a c...
Defending against Attacks on Information Systems
In broad terms, there are six different approaches that can be used to defend information systems against attacks by malicious parties. The ...
Prerequisites for Attacking an Information System
In order for an attack on an information system to succeed, an attacker must possess three specific things: (1) method , (2) opportunity , a...
Harm and the Value of Information Assets
Although in an earlier post I discussed the four types of acts that can cause harm to an information system, here I would like to briefly d...
Harm and Information Assets
In this post, I’d like to discuss harmful acts in the context of information assets. To begin, recall that information security seeks to pr...
On the Valuation of Information Assets
When considering the diagram below, remember that the perceived value of an information asset depends in part upon the ease with which that ...
Information Assets and the Scope of Information Security
When thinking about information security, it’s important to remember that as a discipline and as a profession, information security has a va...