Actions

Difference between revisions of "Information Systems Security (INFOSEC)"

(Created page with "'''Content Coming Soon'''")
 
Line 1: Line 1:
'''Content Coming Soon'''
+
'''Information Systems Security''', also known as '''INFOSEC''', is a broad subject within the field of [[Information Technology (IT)|information technology (IT)]] that focuses on protecting [[Computer|computers]], [[Network|networks]], and their users. Almost all modern companies, as well as many families and individuals, have justified concerns about digital risks to their well-being. These threats come in all shapes and sizes, including theft of private information in a [[Database (DB)|database]]hack, installation of malicious software on a machine and intentional service disruptions. Three of the most commonly recognized elements of INFOSEC are confidentiality, integrity, and availability. This summarizes the core purpose of the IT security profession, which is to ensure information is accessible to a system’s users without being corrupted or stolen by another party.<ref>Definition - What Does Information Systems Security (INFOSEC) Mean? [https://www.computersciencedegreehub.com/faq/what-is-information-systems-security/ Computer Science Degree Hub]</ref>
 +
 
 +
Information systems security does not just deal with computer information, but also protecting data and information in all of its forms, such as telephone conversations.
 +
 
 +
[[Risk Assessment|Risk assessments]] must be performed to determine what information poses the biggest [[Risk|risk]]. For example, one system may have the most important information on it and therefore will need more security measures to maintain security. [[Business Continuity Planning (BCP)|Business continuity planning]] and [[Disaster Recovery Planning|disaster recovery planning]] are other facets of an information systems security professional. This professional will plan for what could happen if a major business disruption occurs, but still allow business to continue as usual.
 +
 
 +
The term is often used in the context of the U.S. Navy, who defines INFOSEC as:
 +
 
 +
COMPUSEC + COMSEC + TEMPEST = INFOSEC
 +
 
 +
Where COMPUSEC is computer systems security, COMSEC is communications security, and TEMPEST is compromising emanations.<ref>Expalining Information Systems Security (INFOSEC) [https://www.techopedia.com/definition/24840/information-systems-security-infosec Techopedia]</ref>

Revision as of 14:02, 20 May 2020

Information Systems Security, also known as INFOSEC, is a broad subject within the field of information technology (IT) that focuses on protecting computers, networks, and their users. Almost all modern companies, as well as many families and individuals, have justified concerns about digital risks to their well-being. These threats come in all shapes and sizes, including theft of private information in a databasehack, installation of malicious software on a machine and intentional service disruptions. Three of the most commonly recognized elements of INFOSEC are confidentiality, integrity, and availability. This summarizes the core purpose of the IT security profession, which is to ensure information is accessible to a system’s users without being corrupted or stolen by another party.[1]

Information systems security does not just deal with computer information, but also protecting data and information in all of its forms, such as telephone conversations.

Risk assessments must be performed to determine what information poses the biggest risk. For example, one system may have the most important information on it and therefore will need more security measures to maintain security. Business continuity planning and disaster recovery planning are other facets of an information systems security professional. This professional will plan for what could happen if a major business disruption occurs, but still allow business to continue as usual.

The term is often used in the context of the U.S. Navy, who defines INFOSEC as:

COMPUSEC + COMSEC + TEMPEST = INFOSEC

Where COMPUSEC is computer systems security, COMSEC is communications security, and TEMPEST is compromising emanations.[2]

  1. Definition - What Does Information Systems Security (INFOSEC) Mean? Computer Science Degree Hub
  2. Expalining Information Systems Security (INFOSEC) Techopedia