Cisco CCNP Security Core (SCOR) 350-701Security ConceptsEasy

A security team is developing a strategy to protect sensitive data from unauthorized access, modification, and destruction. Which core security principle is primarily concerned with ensuring that information is accessible and usable when needed by authorized entities?

  1. ANon-repudiation
  2. BConfidentiality
  3. CAvailability
  4. DIntegrity
Show answer & explanation

Correct answer: C. Availability

Availability ensures that authorized users can access information and systems when required. The scenario explicitly mentions 'accessible and usable when needed', which directly points to availability.

Why the other options are wrong

  • A. Non-repudiation proves that an action was performed by a specific entity and cannot be denied.
  • B. Confidentiality protects against unauthorized disclosure of information.
  • D. Integrity maintains the accuracy and completeness of data.

Availability

The security principle that ensures authorized users can reliably access information and systems when needed, without undue delay or disruption.

  • Crucial for business continuity and operational effectiveness.
  • Protected through redundant systems, disaster recovery, and fault tolerance.
  • Threatened by DoS attacks, hardware failures, and power outages.

Memory trick: CIA: Confidentiality, Integrity, Availability – keeping secrets, keeping true, keeping ready.

More Security Concepts questions