Open Menu

integrity of data and information systems

This revision notes summarises the main kinds of physical security controls that are used to protect information systems


Physical Access Controls

Access controls are designed to prevent unauthorised access to hardware and/or data storage. The main kinds of access control are:

 

 

Human error: e.g. entering incorrect transctions; failing to spot and correct errors; processing the wrong information; accidentally deleting data
Technical errors: e.g. hardware that fails or software that crashes during transaction processing
Accidents and disasters: e.g. floods, fire
Fraud - deliberate attempts to corrupt or amend previously legitimate data and information
Commercial espionage: e.g. competitors deliberately gaining access to commercially-sensitive data (e.g. customer details; pricing and profit margin data, designs)
Malicious damage: where an employee or other person deliberately sets out to destroy or damage data and systems (e.g. hackers, creators of viruses)
 

 

How Can Information Systems be Made More Secure?

There is no such thing as failsafe security for information systems. When designing security controls, a business needs to address the following factors;

Prevention: What can be done to prevent security accidents, errors and breaches? Physical security controls (see more detailed revision note) are a
Detection:
Accidents and disasters: e.g. floods, fire
Fraud - deliberate attempts to corrupt or amend previously legitimate data and information
Commercial espionage: e.g. competitors deliberately gaining access to commercially-sensitive data (e.g. customer details; pricing and profit margin data, designs)
Malicious damage: where an employee or other person deliberately sets out to destroy or damage data and systems (e.g. hackers, creators of viruses)
 

 

 
About tutor2u
tutor2u is the leading global publisher of e-learning resources for Economics, Business, Politics, Enterprise, Law, Sociology, Religious Studies and related subjects. Our materials are used by over 3,500 schools and colleges in the UK and in educational institutions in over 85 other countries. tutor2u offers a range of free and subscription-based materials - designed to support teachers and inspire students. The business also runs a popular series of student revision workshops and teacher conferences. tutor2u was named Online Learning Resource of the Year at the prestigious BETT Show - the World's leading educational show.

Privacy & terms of Use
Our privacy policy is published here: www.tutor2u.net/privacy.asp. The terms of use of this website are set out here: www.tutor2u.net/terms.asp. " tutor2u" is a registered trade mark. The information contained on this website is copyright Tutor2u Limited. All rights reserved

Contact us
The sales team at tutor2u can be contacted by phone on 0844 800 0085. Orders can be faxed to 01937 529236. The office address is: Tutor2u Limited, Boston House, 214 High Street, Boston Spa, UK LS23 6AD   To contact tutor2u by email, please use this form: Tutor2u - Contact Form

Teacher Newsletters & Subject Blogs
tutor2u publishes a variety of free teacher newsletters and blogs for our featured subjects. Teachers can access these materials here: Teacher Newsletters  A daily RSS feed for each of our free subject blogs can be accessed here

 

Tutor2u Tutor2u