From tonight's TTT and other associated posts...feel free to comment...
I would always print these out and display for Security Classes.
The Twelve Commandments of Network Security
I would always print these out and display for Security Classes.
The Twelve Commandments of Network Security
- There is no such thing as Absolute Security and there are no silver bullets
- The three goals of security are Confidentiality, Integrity, and Availability
- Always practice Defense in Depth as a security strategy.
- People, when left to themselves, make the worst security decisions.
- Security involves both Functional and Assurance requirements.
- Security through obscurity is never good policy.
- Security means risk management
- The controls of security are prevention, detection, and response.
- Complexity is the enemy of good security.
- Fear, Uncertainty, and Doubt are not good motivators for security.
- People, Processes and Technology are all necessary in order to have good security.
- Open disclosure is a good thing for security.