0
Fair Lady Posted 21 years ago
Science & IT

Information Security Issues

Hi,

as I've mentioned before, I have a set of questions on information security. The context is the ISO standard on information security management. I just cannot comprehend the meaning of some phrases, e.g.:

1) Contacts should be developed to keep up with industrial trends, monitor standards and assessment methods and provide *** liasion *** when dealing with security incidents.

What is *liaison *** in this context? There are many meanings, and I cannot choose because I'm not quite aware of the English IT terminology

2) Access is provided to... hardware and software support staff, who need access to system level or *** level application *** - could you please explain what's that? Is it applications with a low level of functionality or is it functions of low-level applications [:^)] ?

3) What is "retention of evidence" in the context of security violation by employees? Is it the same as "collection of evidence" ?


4) Care should be taken that no single person can perpetrate fraud in areas of single responsibility without being detected. *** initiation of an *** should be separated from its authorization.

I clearly understand the first sentence, but the second one is totally vague. What is meant by "initiation of event"?

5) Development and test environments should be separated - in this case there's a need to maintain a stable and known environment in which to perfrom meaningful testing and to prevent *** developer *** - what's that ? Does this mean that access of the developer is inappropriate or what?

The questions are isolated, because they are from different paragraphs, but I hope they make sense... Hope they are not very bulky. I'd really appreciate your help.







  

Top answer

So, no volunteers to help a lady? How sad... :/

  • So, no volunteers to help a lady?
  • How sad...
  • :/
Free · every Monday

Get the Weekly English Kit 📬

New words, one handy idiom, and a 2-minute quiz — delivered to your inbox to keep your streak alive.

3 Answers
0
So, no volunteers to help a lady? How sad... :/
0
0 I can answer a few of those: 02br
02br
002. Low level applications are generic here and describes any direct access to the operating system or the kernel. 02br
02br
004. Functionality 1 could be the entry of the data. Functionality 2 would be the validation of the data entered in Func. 1 and would be done by a different person. Here Func. 1 is the initi
0
0 Thanks, Guest! 0-

Related Questions