University of Washington Network Security Credo
| Title: | University of Washington Network Security Credo (ID: EAF0303) | | Author(s): | Terry Gray (University of Washington) | | Topics: | Network Security and Applications, Risk Management, Security Management, Security Policies | | Origin: | Higher Education Information Security Council (formerly the Security Task Force) (2002) | | Type: | Articles, Papers, and Reports, Plans and Guidelines | | Abstract: | Incidents of unauthorized access to networked computer systems in an enterprise are growing at fearful rates. The purpose of this document is to identify general design principles and practices for defending against these threats. The full spectrum of security embraces several phases: prevention, detection, and recovery, and several elements: architecture, policy and education, risk management, liability management, technical defense, and operational defense. However, this document focuses primarily on the prevention phase (including detection of vulnerabilities before they are exploited) and technical defenses. | | View this resource: | |
|