b) Forwarding - The message is running and is being sent for access. c) During processing - the state where the data has been changed or investigated. All states should protect this information. Measures taken to achieve the desired purpose are as follows. b) Policies and practices Proven methods and techniques are used to reduce risks and threats. c) Education and training - Educate threats and precautions on each client.
Confidentiality, integrity, and availability (also called CIA triangle) are security models that guide the information security policy within an enterprise. Three elements of the CIA triangle - confidentiality, integrity, and availability - are considered to be the three most important security components. Information can only be accessed by people who can access the data that needs to be displayed. Data can be categorized according to the type and extent of damage that may occur with unauthorized hands. According to these categories, strict measures can be implemented
The security model maps the abstract goals of the policy to terms of the information system by specifying the explicit data structures and techniques required to implement the security policy. Security models are usually expressed by mathematical and analytical ideas, then mapped to system specifications, and then developed by programmers through programming code. The security model requires this requirement and provides the mathematical equations, relationships and structures necessary to achieve this objective. From now on, each operating system type (Unix, Windows, or Macintosh) develops the specification and the vendor can decide how to implement a mechanism that meets these required specifications.
Chapter 5 Security Model and Architecture In this chapter, you will learn about the following topics:
An important concept in the design and analysis of security systems is the security model because it contains security policies that need to be implemented in the system. This model is a symbolic expression of policy. It maps to the computer system that the policy maker's request should follow. A set of rules - a security model maps the abstract goals of a policy to information system terms by specifying the methods required to implement explicit data structures and security policies. Then developed by programmers through programming code
DOT / FAA / AR - 08/31 Air Transportation Aviation Research and Development Project Planning Office, Washington DC 20591