ISC2 Certified in Cybersecurity (CC)Security PrinciplesMedium

A small e-commerce startup is developing a new online store. They are particularly concerned with ensuring that customers cannot later deny placing orders and that the store cannot deny receiving them. Which security principle directly addresses this concern?

  1. ANon-repudiation
  2. BAvailability
  3. CIntegrity
  4. DConfidentiality
Show answer & explanation

Correct answer: A. Non-repudiation

Non-repudiation ensures that neither party involved in a transaction can later deny having participated. This is essential for e-commerce to prevent disputes over orders and payments.

Why the other options are wrong

  • B. Availability ensures the system is operational, which is not directly related to denying past actions.
  • C. Integrity ensures data has not been tampered with, but doesn't prevent denial of an action itself.
  • D. Confidentiality protects data from unauthorized viewing, not from denying actions.

Non-repudiation

The assurance that a party cannot falsely deny having made a transaction or communication. It provides undeniable proof of origin and delivery.

  • Prevents deceitful denial of participation in a transaction.
  • Often implemented using digital signatures and secure logging.
  • Crucial for legal and financial accountability.

Memory trick: Don't deny, verify with CIAAN.

More Security Principles questions