Introduction and definition
Computer information systems are becoming more and more important in daily life. Governments, private enterprises and individuals have found the need to protect data and information that is in their custody against unauthorized access, disclosure or damage. This is because of the rise of the information age and society leading to the subsequent view of information as a scarce valuable resource. This has posed threats to data and information both from known and unknown sources.
Data and information security Data security involves:
1. Protection of data and information against unauthorized access or modification.
2. Denial of data and information to unauthorized users.
3. Provision of data and information to authorized users.
Data security also includes all the measures that will be taken to detect, document and counter the threats to data and information.
Data and information privacy
Private data or information is that which belongs to an individual and must not be accessed by or disclosed to any other person unless with direct permission from the owner. On the other hand, the data or information held by a government or organization about people is confidential data. This data and information may be seen by many authorized persons without the knowledge of the owner. However, it should not be used for commercial gain or any other unofficial purpose without the owner being informed. This data must also be protected against unauthorized access or disclosure.