CIA TRIAD Confidentiality Confidentiality ensures that sensitive information is only available to people who are authorized to access it . Security Controls for confidentiality data protection : Encryption -> Encrypting data with latest encryption mechanism Access Control -> LDAP, Managed permission Steganography -> Hiding data within data , obscuring the data Causes of Un-Intentional data disclosure : Human Error Oversight Ineptitude Violation of Confidentiality Attacks: Capturing network traffic Stealing password files Social Engineering Port Scanning Shoulder Surfing Eavesdropping - Also known as sniffing or snooping attack , secretly listening Escalation of privileges Countermeasures to ensure confidentiality: Encryption Network traffic paddling Rigorous access controls Strict Authentication process Data classification Personnel Training Integrity Integrity refers to prevention of un-authorized alterations to th...