Fundamentals of Information Systems

9th Edition
Ralph Stair + 1 other
Publisher: Cengage Learning
ISBN: 9781337097536

Chapter 8, Problem 8RQ
Identify several areas for which system security and control requirements need to he defined.

Several areas for which it is mandatory to define system security and control requirements.

Security and control considerations need to be an integral part of the entire system development process. Unfortunately, they are often treated as an afterthought, after system requirements have been defined and system design is well underway. This approach usually leads to problems that become security vulnerabilities, which can cause major security breaches resulting in significant legal and system modification expenses. The following list provides examples of areas for which security and control requirements might need to be defined

• Access controls include controls to confirm and authorize path only to sanctioned individuals.

• Encryption of electronic customer information includes while in transition or in an area on networks or systems to which unapproved individuals may obtain access...

Fundamentals of Information Systems
