Accession Number:

ADA393550

Title:

Engineering Principles for Information Technology Security (A Baseline for Achieving Security)

Descriptive Note:

Corporate Author:

BOOZ-ALLEN AND HAMILTON INC MCLEAN VA

Report Date:

2001-06-01

Pagination or Media Count:

32.0

Abstract:

The purpose of the Engineering Principles for Information Technology IT Security HP-ITS is to present a list of system-level security principles to he considered in the design, development, and operation of an information system. Ideally, the principles presented here would he used from the onset of a program-at the beginning of, or during the design phase- and then employed throughout the systems life-cycle. However, these principles are also helpful in affirming and confirming the security posture of already deployed information systems. The principles are short and concise and can he used by organizations to develop their system life-cycle policies.

Subject Categories:

  • Computer Systems Management and Standards

Distribution Statement:

APPROVED FOR PUBLIC RELEASE