The security management concepts and principles define basic parameters needed for a secure environment, define goals and objectives that both policy designers and system implementers must achieve to create a security solution.

The concept basically:

  • defines parameters needed for secure enviroments
  • defines GOALS for policy designers and system implementers that must be achived by creating a security solution
  • define OBJECTS for policy designers and system implementers that must be achived by creating a security solution

There are 5 pillars of information security:

The most commonly discussed among them are labeled as CIA Triad. They are:

Reference

  • CISSP learning materials