Confidentiality ensures that the necessary level of secrecy is enforced at each terminal of data processing and prevents unapproved or unauthorised exposure.
Integrity is sustained when the assurance of the accuracy and reliability of information and systems is provided and any unapproved change is blocked.
Availability protection ensures reliability and timely access to data and resources to approved individuals including insiders and outsiders.
Nonrepudiation Ensures that a sender cannot deny sending a message. Mechanisms include encryption, digital signatures, and notarization.
A threat is any potential danger that is associated with the exploitation of a vulnerability.
A vulnerability is a lack of a countermeasure or a weakness in a countermeasure that is in place.
Exposure is an occurrence of being exposed to losses. A vulnerability exposes an organisation.
A risk is the likelihood of a threat agent exploiting a vulnerability and the corresponding business impact.
Key Important Aspects of Information Security.