Security principles
Confidentiality
Integrity
Availability
Confidentiality
Information should only be accessed by individuals or groups with the authorisation to do so. An organisation should use protection measures like usernames, passwords and user access levels
Integrity
Information is maintained so that it up to date, correct and fit for purpose. Organisations should carry out regular data maintenance to update data
Availability
Information is available to individuals or groups who need it. It should only be available to authorised personnel. Staff should have correct privileges to easily access data when required