Confidentiality

Security Operations 🛡️ • Security+ 🏆 Difficulty: free

Definition

Confidentiality ensures that information is only accessible to authorized people, systems, or processes, protecting data from unauthorized viewing or disclosure.

Examples

  • A company encrypts customer data in its database and restricts access to only the billing team.
  • A healthcare provider stores patient records in a system that requires multi-factor authentication and logs every access.

Overview

Confidentiality is one of the three pillars of the CIA Triad. It focuses on preventing unauthorized disclosure of information, whether accidental or intentional. In practice, confidentiality combines technical controls like encryption and access control with administrative measures such as policies, training, and data handling standards. The goal is to make sure sensitive information remains private throughout its lifecycle, from creation and storage to transmission and disposal.

Open the interactive lesson Browse more topics

Tip: The interactive version includes progress tracking, decks, and premium deep dives.