Security is ...


... "freedom from those conditions that can cause loss of assets with unacceptable consequences" [source: NIST SP800-160v1r1]
... "the state in which one or more assets is adequately protected against risks" [source: SecAware glossary]
... "an illusion of protection against perpetual vulnerabilities being actively exploited" [source: Philip Brider]
... related to informationcontrolgovernance, compliance, riskresilience, continuity, privacy, assets, IT, society, technology, politics, systems,
networking, incidents, '
cyber', assurance, trust, people ...
... the NO Department - absolutely not, no way, forbidden, don't do that!
... the product of a safe, stable, supportive environment
... ensuring confidentiality, integrity and availability
... the apparent absence of incidents
... best avoided to get the job done
... having no exposed vulnerability
... the lull before the next incident
... no indications of compromise
... an architectural perspective
... achieved by controlling risk
... the Maybe IF Department
... the lull before the storm
... the absence of incidents
... the Yes But Department
... no apparent incidents
... relative, not absolute
... freedom from threat
... something to evade
... a temporary respite
... valuables protected
... difficult to achieve
... a business enabler
... costly to maintain
 ... more than cyber
... seldom specified
... hard to measure

... trustworthiness
 ... a state of mind
... an impediment
... merely a suffix
... hardened steel
... a moving goal
... a happy place
... multi-layered
... an objective
... an assertion
... our product
 ... a challenge
... asymptotic
... ephemeral
... confidence
... soundness
... passwords
... demanded
... a delusion
... protection
... a product
 ... a blocker
... padlocks
... strategy
... stability
... comfort
... the law
... a myth
... muscle
... guards
... chains
... safety
... a pain
... policy
... peace
... locks
... rules
... hope
... trust
... guns
... keys
... love
... MFA
...
  

Popular posts from this blog

Pragmatic ISMS implementation guide (FREE!)

Two dozen information risks that ISO forgot

Philosophical phriday - compliance risk

ISMS internal audit priorities

Reading between the lines of ISO27001 [L O N G]

Passionate dispassion

45 ISO Management Systems Standards

Philosophical phriday - a noncompliance ramble

Adaptive SME security Crowdstrike special