CIA Triad
The CIA Triad is a model that is designed to help companies guide policies for security information within their organization. Throughout this assignment we will talk about what exactly the CIA Triad is and the differences between Authentication and Authorization.
What is the CIA Triad?
The CIA Triad stands for confidentiality, integrity, and availability. The confidentiality is for “protecting information from unauthorized access”. What this is saying is the confidentiality side of this is to make sure no information is being accessed from any unauthorized people. The integrity side is making sure all of the data that is coming in is trustworthy and nothing has been messed with or is being modified by an unauthorized person. The availability aspect is the data is ready and accessible whenever it is needed. This Triad is a model that is used for information with security.
Authentication vs. Authorization
What is the difference between authentication and authorization? Authentication is the process of identifying the user or device. For example, when you have to put in your password to access your laptop or your phone. With authorization it is when you are gaining access to things on the device you have had to be authenticated for. For example, logging into your email account after entering your password to your laptop and having to confirm it is you by using a software like duo mobile to confirm it is you.
Conclusion
To conclude, the CIA Triad is a model that is designed to help for information with security. The difference between authentication and authorization is either just entering a password or also having to use a software like duo mobile to confirm it is you logging onto a certain kind of software.
References
“Confidentiality, Integrity, and Availability: The CIA Triad.” Office of Information Security, informationsecurity.wustl.edu/guidance/confidentiality-integrity-and-availability-the-cia-triad/. Accessed 30 May 2025.