4 Broad Categories of Security Controls
Technical Controls
Managerial Controls
Operational Controls
Physical Controls
Technical Controls
Technologies, hardware, and software mechanisms that are implemented to manage and reduce risks.
Managerial Controls
Sometimes also referred to as administrative controls.
Involve the strategic planning and governance side of security.
Operational Controls
Procedures and measures that are designed to protect data on a day-to-day basis.
Are mainly governed by internal processes and human actions.
Physical Controls
Tangible, real-world measures taken to protect assets.