The CIA Triad, also known as Confidentiality, Integrity, and Availability, is the household for
information security. The “C” stands for confidentiality making sure data is only accessible to
permitted people or systems. The “I” stands for integrity making sure the information received
is accurate and reliable ensuring it hasn’t been tampered with. The A stands for Availability
making sure the information is ready when needed. The Triad is a framework for securing
information assets.
Authentication is a process to verify an identity of something trying to access its system. Would
ask questions like “Who are you?”. Authentication has to do with things like passwords and
usernames, usually some type of credential. Authorization has to deal with permissions and
accessibility. In my opinion authorization is something that has control over something. So once
a user’s identity is founded all their information is in control of someone else. For example, if
someone was to guess another’s bank information, that one person would have access over
something that isn’t there’s.