Domain 6, “Security Architecture and Models”

Examining the Differences Between Government and Industry Models

Historically, government computer security issues have centered on confidentiality—making sure unauthorized individuals cannot access information. On the public (or commercial) side, concerns have been of the correctness or integrity/consistency of data.

Security Models

Security models are attempts at organizing the management of security in an environment. Other models, discussed in other chapters, are examined here for comparison.

Clark-Wilson

The Clark-Wilson model emphasizes data integrity and does so for commercial activities. It uses software engineering concepts such as abstract data types, separation of privilege, allocation of ...

Get CISSP Training Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.