CRISC Certified in Risk and Information Systems Control All-in-One Exam Guide, Second Edition, 2nd Edition
by Peter H. Gregory, Bobby E. Rogers, Dawn Dunkerley
GLOSSARY
acceptable use policy (AUP) Organizational policy that describes both acceptable and unacceptable actions when using organizational computing resources, as well as the consequences of violating the policy.
access control The processes and technologies involved in protecting information, systems, and data against unauthorized disclosure, modification, or loss through the control of access to those resources physically and/or logically.
accountability The ability to trace an action or event to a specific subject and to hold that subject responsible for their actions.
AIC triad See CIA triad.
assessment The process of determining whether a program, project, or control is meeting specified objectives as well as determining whether ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access