Like this CertiGuide? Get it in PDF format!
Click Here!
Use coupon code "certiguide" to save 20%!
(Expires 2004/12/31)

Also available: 300-question Security+ practice test!
Get It Here!

Custom Search







Table Of Contents  CertiGuide to Security+
 9  Chapter 5:  Operational/Organizational Security (Domain 5.0; 15%)
      9  5.4  Policy and Procedures
           9  5.4.1  Security Policy

Previous Topic/Section
5.4.1.4  Separation of Duties
Previous Page
Pages in Current Topic/Section
1
Next Page
5.4.1.6  Password Management
Next Topic/Section

5.4.1.5  Need to Know

Need-to-know is a fundamental security principle which involves workers having just enough information to do their jobs. Knowing more than the minimum amount required can create a security risk due to sensitive data being known to more people than those who absolutely require it. It’s simply a “numbers” game – with each additional person having the information, the probability that it will be exploited increases. Information requests must be backed by a genuine need-to-know. If the need-to-know is not there, the request should not necessarily be granted. Be prepared to justify your requests for information.

Need to Know

Involves making sure a worker has just enough data to do their job.



Previous Topic/Section
5.4.1.4  Separation of Duties
Previous Page
Pages in Current Topic/Section
1
Next Page
5.4.1.6  Password Management
Next Topic/Section

If you find CertiGuide.com useful, please consider making a small Paypal donation to help the site, using one of the buttons below. You can also donate a custom amount using the far right button (not less than $1 please, or PayPal gets most/all of your money!) In lieu of a larger donation, you may wish to consider buying an inexpensive PDF equivalent of the CertiGuide to Security+ from StudyExam4Less.com. (Use coupon code "certiguide" by December 31, 2004 to save 20%!) Thanks for your support!
Donate $2
Donate $5
Donate $10
Donate $20
Donate $30
Donate: $



Home - Table Of Contents - Contact Us

CertiGuide for Security+ (http://www.CertiGuide.com/secplus/) on CertiGuide.com
Version 1.0 - Version Date: November 15, 2004

Adapted with permission from a work created by Tcat Houser et al.
CertiGuide.com Version Copyright 2004 Charles M. Kozierok. All Rights Reserved.
Not responsible for any loss resulting from the use of this site.