Difference between revisions of "Confidentiality"

From CIPedia
Jump to navigation Jump to search
Line 2: Line 2:
 
==Definitions==
 
==Definitions==
 
=== International definitions===
 
=== International definitions===
==== ITU-T ====
+
==== [[ITU-T]] ====
 
{{definition|The property that information is not made available or disclosed to unauthorized individuals, entities, or processes. <ref>ITU Security in Telecommunications and Information Technology: An overview of issues and the deployment of existing ITU-T Recommendations for secure telecommunications, ITU-T, Geneva (2012) - ITU-T X-800.</ref>}}<br />
 
{{definition|The property that information is not made available or disclosed to unauthorized individuals, entities, or processes. <ref>ITU Security in Telecommunications and Information Technology: An overview of issues and the deployment of existing ITU-T Recommendations for secure telecommunications, ITU-T, Geneva (2012) - ITU-T X-800.</ref>}}<br />
 
{{definition|Confidentialité: Propriété d'une information qui n'est ni disponible, ni divulguée aux personnes, entités ou processus non autorisés. <ref>Sécurité dans les télécommunications et les technologies de l’information: Aperçu des problèmes et présentation des Recommandations UIT-T existantes sur la sécurité dans les télécommunications, ITU-T, Geneva (2012) - ITU-T X.800.</ref>}}<br />
 
{{definition|Confidentialité: Propriété d'une information qui n'est ni disponible, ni divulguée aux personnes, entités ou processus non autorisés. <ref>Sécurité dans les télécommunications et les technologies de l’information: Aperçu des problèmes et présentation des Recommandations UIT-T existantes sur la sécurité dans les télécommunications, ITU-T, Geneva (2012) - ITU-T X.800.</ref>}}<br />
Line 10: Line 10:
  
 
=== National Definitions ===
 
=== National Definitions ===
==== Brazil ====
+
==== [[Brazil] ====
 
{{definition| Confidencialidade: propriedade de que a informação não esteja disponível ou revelada a pessoa física, sistema, órgão ou entidade não autorizado e credenciado. <ref>[http://www.biblioteca.presidencia.gov.br/publicacoes-oficiais-1/catalogo/orgao-essenciais/gabinete-de-seguranca-institucional/guia-de-referencia-para-seguranca-de-infraestruturas-criticas-da-informacao/at_download/file GUIA DE REFERÊNCIA PARA A SEGURANÇA DAS INFRAESTRUTURAS CRÍTICAS DA INFORMAÇÃO Versão 01 (Nov. 2010)/ Instrução Normativa Nº 1, de 13 de junho de 2008. Gabinete de Segurança Institucional da Presidência da República.]</ref><br />Confidentiality is the property that information is not available or disclosed to an unauthorized and non-accredited individual, system, agency or entity.}} <br />
 
{{definition| Confidencialidade: propriedade de que a informação não esteja disponível ou revelada a pessoa física, sistema, órgão ou entidade não autorizado e credenciado. <ref>[http://www.biblioteca.presidencia.gov.br/publicacoes-oficiais-1/catalogo/orgao-essenciais/gabinete-de-seguranca-institucional/guia-de-referencia-para-seguranca-de-infraestruturas-criticas-da-informacao/at_download/file GUIA DE REFERÊNCIA PARA A SEGURANÇA DAS INFRAESTRUTURAS CRÍTICAS DA INFORMAÇÃO Versão 01 (Nov. 2010)/ Instrução Normativa Nº 1, de 13 de junho de 2008. Gabinete de Segurança Institucional da Presidência da República.]</ref><br />Confidentiality is the property that information is not available or disclosed to an unauthorized and non-accredited individual, system, agency or entity.}} <br />
==== Cameroon (Cameroun) ====
+
==== [[Cameroon]] (Cameroun) ====
 
{{definition|Confidentialité: maintien du secret des informations et des transactions afin de prévenir la divulgation non autorisée d’informations aux non destinataires permettant la lecture, l’écoute, la copie illicite d’origine intentionnelle ou accidentelle durant leur stockage, traitement ou transfert. <ref>[http://www.antic.cm/images/stories/data/IMG/pdf/cybersecurite/Loi_2010-012_cybersecurite_cybercriminalite.pdf LOI N°2010/012 DU 21 DECEMBRE 2010 RELATIVE A LA CYBERSECURITE ET LA CYBERCRIMINALITE AU CAMEROUN ]</ref>}}<br />
 
{{definition|Confidentialité: maintien du secret des informations et des transactions afin de prévenir la divulgation non autorisée d’informations aux non destinataires permettant la lecture, l’écoute, la copie illicite d’origine intentionnelle ou accidentelle durant leur stockage, traitement ou transfert. <ref>[http://www.antic.cm/images/stories/data/IMG/pdf/cybersecurite/Loi_2010-012_cybersecurite_cybercriminalite.pdf LOI N°2010/012 DU 21 DECEMBRE 2010 RELATIVE A LA CYBERSECURITE ET LA CYBERCRIMINALITE AU CAMEROUN ]</ref>}}<br />
====Czech Republic====
+
====[[Czech Republic]]====
 
{{definition|Characteristic that information is not available or is not disclosed to unauthorized individuals, entities or processes (Vlastnost, že informace není dostupná nebo není odhalena neautorizovaným jednotlivcům, entitám nebo procesům). <ref> [http://www.govcert.cz/download/nodeid-3555/ Cyber Security Explanatory Glossary (2013)]</ref>}}
 
{{definition|Characteristic that information is not available or is not disclosed to unauthorized individuals, entities or processes (Vlastnost, že informace není dostupná nebo není odhalena neautorizovaným jednotlivcům, entitám nebo procesům). <ref> [http://www.govcert.cz/download/nodeid-3555/ Cyber Security Explanatory Glossary (2013)]</ref>}}
 
<br />
 
<br />
====India====
+
====[[India]]====
 
{{definition|The condition in which sensitive data is kept secret and disclosed only to authorized parties. <ref>[http://www.dgqadefence.gov.in/documents/pdf/cyber-security-policy-dgqa-2015.pdf India's DGQA Cyber Security Policy (2015)] </ref>}}<br />
 
{{definition|The condition in which sensitive data is kept secret and disclosed only to authorized parties. <ref>[http://www.dgqadefence.gov.in/documents/pdf/cyber-security-policy-dgqa-2015.pdf India's DGQA Cyber Security Policy (2015)] </ref>}}<br />
 
==== Luxembourg ====
 
==== Luxembourg ====
 
{{definition|Confidentialité: propriété d’une information qui n’est ni disponible, ni divulguée aux personnes, entités ou processus non autorisés. <ref>[From French Glossary]</ref>}}<br />
 
{{definition|Confidentialité: propriété d’une information qui n’est ni disponible, ni divulguée aux personnes, entités ou processus non autorisés. <ref>[From French Glossary]</ref>}}<br />
==== Netherlands====
+
==== [[Netherlands]]====
 
{{definition|''Vertrouwelijkheid'' is de mate waarin toegang tot informatie beperkt is tot degenen die daartoe bevoegd zijn. <ref>[http://www.pblq.nl/media/63123/HEC%20Zakboekje%20preventie%20cybercrime.pdf Zakboekje Preventie Cybercrime (2008]</ref>}}<br />
 
{{definition|''Vertrouwelijkheid'' is de mate waarin toegang tot informatie beperkt is tot degenen die daartoe bevoegd zijn. <ref>[http://www.pblq.nl/media/63123/HEC%20Zakboekje%20preventie%20cybercrime.pdf Zakboekje Preventie Cybercrime (2008]</ref>}}<br />
  
==== Norway ====
+
==== [[Norway]] ====
 
{{definition|Assurance that specific information is not disclosed to unauthorised persons, and that only authorised persons have access. <ref>[https://www.regjeringen.no/globalassets/upload/fad/vedlegg/ikt-politikk/cyber_security_strategy_norway.pdf Cyber Security Strategy for Norway (2012)]</ref><br />Konfidensialitet: Sikkerhet for at nærmere angitt informasjon ikke avsløres for uvedkommende, og at kun autoriserte personer får tilgang til denne. <ref>[https://www.regjeringen.no/globalassets/upload/fad/vedlegg/ikt-politikk/nasjonal_strategi_infosikkerhet.pdf Nasjonal strategi for informasjonssikkerhet (2012)]</ref>}}<br />
 
{{definition|Assurance that specific information is not disclosed to unauthorised persons, and that only authorised persons have access. <ref>[https://www.regjeringen.no/globalassets/upload/fad/vedlegg/ikt-politikk/cyber_security_strategy_norway.pdf Cyber Security Strategy for Norway (2012)]</ref><br />Konfidensialitet: Sikkerhet for at nærmere angitt informasjon ikke avsløres for uvedkommende, og at kun autoriserte personer får tilgang til denne. <ref>[https://www.regjeringen.no/globalassets/upload/fad/vedlegg/ikt-politikk/nasjonal_strategi_infosikkerhet.pdf Nasjonal strategi for informasjonssikkerhet (2012)]</ref>}}<br />
  
==== Turkey ====
+
==== [[Turkey]] ====
 
{{definition|Information systems and data can be accessed by authorized persons or systems only, and the confidential information pertaining to information systems or confidential information in the system will not be disclosed by unauthorized persons or systems. <ref> [http://www.enisa.europa.eu/activities/Resilience-and-CIIP/national-cyber-security-strategies-ncsss/TUR_NCSS.pdf Turkey's National Cyber Security Strategy and 2013-2014 Action Plan]</ref><br /><br />Gizlilik: Bilişim sistem ve verilerine sadece yetkili kişi veya sistemlerce erişilebilmesini; bilişim sistemlerine ait veya sistemdeki gizli verinin yetkisiz kişi veya sistemlerce ifşa edilmemesini. <ref>[http://www.resmigazete.gov.tr/eskiler/2013/06/20130620-1-1.pdf UlUSAL SİBER GÜVENLİk STRATEJİSİ VE]</ref>}}<br />
 
{{definition|Information systems and data can be accessed by authorized persons or systems only, and the confidential information pertaining to information systems or confidential information in the system will not be disclosed by unauthorized persons or systems. <ref> [http://www.enisa.europa.eu/activities/Resilience-and-CIIP/national-cyber-security-strategies-ncsss/TUR_NCSS.pdf Turkey's National Cyber Security Strategy and 2013-2014 Action Plan]</ref><br /><br />Gizlilik: Bilişim sistem ve verilerine sadece yetkili kişi veya sistemlerce erişilebilmesini; bilişim sistemlerine ait veya sistemdeki gizli verinin yetkisiz kişi veya sistemlerce ifşa edilmemesini. <ref>[http://www.resmigazete.gov.tr/eskiler/2013/06/20130620-1-1.pdf UlUSAL SİBER GÜVENLİk STRATEJİSİ VE]</ref>}}<br />
  
 
=== Standard Definition ===
 
=== Standard Definition ===
==== ISO/IEC 27000:2014 ====
+
==== [[ISO|ISO/IEC 27000:2014]] ====
 
{{definition|Property that information is not made available or disclosed to unauthorized individuals, entities, or processes. <ref name="ISO27000-14"> [http://www.iso.org/iso/home/store/catalogue_ics/catalogue_detail_ics.htm?csnumber=63411 ISO/IEC 27000:2014, Information technology -- Security techniques -- Information security management systems -- Overview and vocabulary]</ref>}}
 
{{definition|Property that information is not made available or disclosed to unauthorized individuals, entities, or processes. <ref name="ISO27000-14"> [http://www.iso.org/iso/home/store/catalogue_ics/catalogue_detail_ics.htm?csnumber=63411 ISO/IEC 27000:2014, Information technology -- Security techniques -- Information security management systems -- Overview and vocabulary]</ref>}}
 
<br />
 
<br />

Revision as of 16:30, 18 July 2015


Definitions

International definitions

ITU-T

The property that information is not made available or disclosed to unauthorized individuals, entities, or processes. [1]


Confidentialité: Propriété d'une information qui n'est ni disponible, ni divulguée aux personnes, entités ou processus non autorisés. [2]


Confidencialidad: Propiedad que garantiza que la información no se pone a disposición ni se divulga a personas, entidades o procesos no utorizados. [3]


机密性: 防止信息提供或泄露给未经授权的个人、实体或过程的特性. [4]


National Definitions

[[Brazil]

Confidencialidade: propriedade de que a informação não esteja disponível ou revelada a pessoa física, sistema, órgão ou entidade não autorizado e credenciado. [5]
Confidentiality is the property that information is not available or disclosed to an unauthorized and non-accredited individual, system, agency or entity.


Cameroon (Cameroun)

Confidentialité: maintien du secret des informations et des transactions afin de prévenir la divulgation non autorisée d’informations aux non destinataires permettant la lecture, l’écoute, la copie illicite d’origine intentionnelle ou accidentelle durant leur stockage, traitement ou transfert. [6]


Czech Republic

Characteristic that information is not available or is not disclosed to unauthorized individuals, entities or processes (Vlastnost, že informace není dostupná nebo není odhalena neautorizovaným jednotlivcům, entitám nebo procesům). [7]


India

The condition in which sensitive data is kept secret and disclosed only to authorized parties. [8]


Luxembourg

Confidentialité: propriété d’une information qui n’est ni disponible, ni divulguée aux personnes, entités ou processus non autorisés. [9]


Netherlands

Vertrouwelijkheid is de mate waarin toegang tot informatie beperkt is tot degenen die daartoe bevoegd zijn. [10]


Norway

Assurance that specific information is not disclosed to unauthorised persons, and that only authorised persons have access. [11]
Konfidensialitet: Sikkerhet for at nærmere angitt informasjon ikke avsløres for uvedkommende, og at kun autoriserte personer får tilgang til denne. [12]


Turkey

Information systems and data can be accessed by authorized persons or systems only, and the confidential information pertaining to information systems or confidential information in the system will not be disclosed by unauthorized persons or systems. [13]

Gizlilik: Bilişim sistem ve verilerine sadece yetkili kişi veya sistemlerce erişilebilmesini; bilişim sistemlerine ait veya sistemdeki gizli verinin yetkisiz kişi veya sistemlerce ifşa edilmemesini. [14]


Standard Definition

ISO/IEC 27000:2014

Property that information is not made available or disclosed to unauthorized individuals, entities, or processes. [15]


See also

Notes

  1. ITU Security in Telecommunications and Information Technology: An overview of issues and the deployment of existing ITU-T Recommendations for secure telecommunications, ITU-T, Geneva (2012) - ITU-T X-800.
  2. Sécurité dans les télécommunications et les technologies de l’information: Aperçu des problèmes et présentation des Recommandations UIT-T existantes sur la sécurité dans les télécommunications, ITU-T, Geneva (2012) - ITU-T X.800.
  3. Seguridad de las telecomunicaciones y las tecnologías de la información: Exposición general de asuntos relacionados con la seguridad de las telecomunicaciones y la aplicación de las Recomendaciones vigentes del UIT-T, ITU-T, Geneva (2012) - ITU-T X.800.
  4. 关于电信安全的若干议题综述 及相关ITU-T建议书应用简介, ITU-T, Geneva (2012) - ITU-T H.235.
  5. GUIA DE REFERÊNCIA PARA A SEGURANÇA DAS INFRAESTRUTURAS CRÍTICAS DA INFORMAÇÃO Versão 01 (Nov. 2010)/ Instrução Normativa Nº 1, de 13 de junho de 2008. Gabinete de Segurança Institucional da Presidência da República.
  6. LOI N°2010/012 DU 21 DECEMBRE 2010 RELATIVE A LA CYBERSECURITE ET LA CYBERCRIMINALITE AU CAMEROUN
  7. Cyber Security Explanatory Glossary (2013)
  8. India's DGQA Cyber Security Policy (2015)
  9. [From French Glossary]
  10. Zakboekje Preventie Cybercrime (2008
  11. Cyber Security Strategy for Norway (2012)
  12. Nasjonal strategi for informasjonssikkerhet (2012)
  13. Turkey's National Cyber Security Strategy and 2013-2014 Action Plan
  14. UlUSAL SİBER GÜVENLİk STRATEJİSİ VE
  15. ISO/IEC 27000:2014, Information technology -- Security techniques -- Information security management systems -- Overview and vocabulary