|
Online Training and Development in Information Security |
Integrated Security The responsibility for securing an organisation’s information assets is not confined to the IT department: the entire organisation needs to support the principles of: - Confidentiality – protecting information from unauthorised access;
- Integrity – preventing data from being corrupted;
- Availability – ensuring that authorised users have access to information in a reliable and timely manner;
- Accountability – maintaining systems for tracing actions to their source when information has been compromised.
|
|
Read more...
|
|
|
The need for Policies and training in Information Security |
Vigilant Staff Sound policies and training programmes in Information Security have never been more important, given a number of key trends: - The proliferation of data storage options in which vast quantities of valuable and often sensitive data can travel as e-mail attachments or transferred to portable devices;
- The outsourcing of functional activities to third parties who are given access to data concerning customers, staff and commercially sensitive projects;
- The increased popularity of social networking sites on the Internet where personal data can be exploited by the online criminal;
- The rise and growing sophistication of organised online crime that is finding more ingenious ways to access systems and steal data for financial gain.
|
|
Read more...
|
|
|