Originally when I first was learning about this topic I thought the CIA triad meant the US government CIA, the central intelligence agency. But I was wrong. But I have already studied this topic before and know the basic’s. The most I know about the CIA triad is what the triad stands for, what is it purpose, and pros and cons. The CIA triad refers to is making any form of information secure, keeping it secure and available to the authorized users. The C stands for confidentially, I stands for integrity, then A stands availability. All there are needs to be success when this concept is used.
The C in the CIA triad stands for Confidentially. Keep classified information secret. Having the option to keep what information you want secret to who or what you want that to be to. An example is online shopping account information. Login credentials are keep in there. Not only that but address, credit card and bank account info also. Another example are ATMS. They use the concept of multifactor authentication to ensure proper confidentiality. Physical and electrical like a pin are needs to deposit and withdraw money. The same thing we use at ODU when we sign into my ODU.
The I in the triad stands for Integrity. Once that information is classified as confidential then we have to make sure the integrity of that information stands. So when I enter my secure and personal information in amazon or on edu.edu is the integrity of those systems strong enough to keep my information secure. According to Ryan brooks on blog.netwrix.com the I in the triad has three goals to achieve in data security. Preventing the modification of information by unauthorized users, preventing the unauthorized or unintentional modification of information by authorized users, preserving internal and external consistency. Once that information is secured by users. The organization that secures that information is responsible for keeping the integrity of that information. Example is here at ODU when I pay my tuition I have my billing information inside odu records. They have to make sure that my personal information cant be modified. But if it is modified its by me or an authorized user. Also making sure my information isn’t being released.
The A in the triad stands for availability. Availability ensures that a system’s authorized users have timely and uninterrupted access to the information in the system and to the network. Simply put it availability is in a secure information environment, who or what can access my information and if they are why are they accessing it. I like using ODU as examples. One example of A in the triad is when they put holds on you account. My odu records are available to see. The financial aid office can see my account and if they see I haven’t paid my tuition they send that information to treasure and they can put a hold on my account. But a example of not having strong availability is having a random user access my information. Even if they cant change or modify info. They shouldn’t be able to view it at all.