What Is Information Systems Security?

A good definition of information systems security (ISS) is the act of protecting information and the systems that store and process it. This protection is against risks that would lead to unauthorized access, use, disclosure, disruption, modification, or destruction of information. The first thing that should be clear from this definition is that ultimately it is the information that requires protecting. Usually, information is on digital devices such as computers, tablets, routers, and similar devices. Those devices’ primary value is the information on them.

It is important to remember that it is not just the information inside a computer you need to protect. Information needs to be protected in any form. ...

Get Security Policies and Implementation Issues, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.