Information security, which centers on the protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability.
Components Information Security Assurance?
*Availability.
*Integrity
*Authentication
*Confidentiality
*Non-repudiation
*Implementing the five pillars of Information Assurance
Differentiate the certification programs to Common body language?
*Understand h0w your personal style influences your body language
*Interpret common gestures
*Understand power poses
*Understand the differences in the body language across cultures
*Understand the nuances of handshakes and touch
Differentiate the Governance and Risk management?
Governance, or corporate governance, is the overall system of rules, practices, and standards that the guide a business.
Risk, or enterprise risk management, is the process of identifying potential hazards to the business and acting to reduce or eliminate their financial impact.
Different between Security Architecture to Design?
However, these two terms are a bit different.
Security architecture is the set of resources and components of security system that allow it to function. Security design refers to the techniques and methods that position those hardware and software elements to facilitate security.
Different between Business Continuity Planning to D-i-s-a-s-t-e-r Recovery Planning?
A business continuity plan (BCP) is a document that outlines how a business will continue operating during an unplanned disruption in service. It’s more comprehensive than a disaster recovery plan and contains contingencies for business processes, assets, human resources and business partners – every aspect of the business that might be affected.
Plans typically contain a checklist that includes supplies and equipment, data backups and backup site locations. Plans can also identify plan administrators and include contact information for emergency responders, key personnel and backup site providers. Plans may provide detailed strategies on how business operations can be maintained for both short-term and long-term outages.
A key component of a business continuity plan (BCP) is a disaster recovery plan that contains strategies for handling IT disruptions to networks, servers, personal computers and mobile devices. The plan should cover how to reestablish office productivity and enterprise software so that key business needs can be met. Manual workarounds should be outlined in the plan, so operations can continue until computer systems can be restored.
There are three primary aspects to a business continuity plan for key applications and processes:
High availability: Provide for the capability and processes so that a business has access to applications regardless of local failures. These failures might be in the business processes, in the physical facilities or in the IT hardware or software.
Continuous operations: Safeguard the ability to keep things running during a disruption, as well as during planned outages such as scheduled backups or planned maintenance.
Disaster recovery: Establish a way to recover a data center at a different site if a disaster destroys the primary site or otherwise renders it inoperable
What is Investigation?
An investigation is a systematic, minute, and thorough attempt to learn the facts about something complex or hidden; it is often formal and official: an investigation of a bank failure. Investigation, examination, inquiry, research express the idea of an active effort to find out something
What is Ethics?
Ethics or moral philosophy is a branch of philosophy that "involves systematizing, defending, and recommending concepts of right and wrong behavior". The field of ethics, along with aesthetics, concerns matters of value; these fields comprise the branch of philosophy called axiology
What is Information Security?
Information security is the practice of protecting information by mitigating information risks. It is part of information risk management.
It refers to the processes and methodologies which are designed and implemented to protect print, electronic, or any other form of confidential, private and sensitive information or data from unauthorized access, use, misuse, disclosure, destruction, modification, or disruption