Security controls

Before exploring access controls, let's discover some important terms in security controls. By definition, a control as a noun means an entity that checks based on a standard. Security controls are divided into three main categories:

  • Management security controls: These use managerial techniques and planning to reduce the following risks:
    • Vulnerability analysis
    • Pentesting
    • Risk analysis
  • Technical security controls: This is also known as operational security controls. They use both technologies and awareness as safeguards. These are some examples:
    • Firewalls
    • Encryption
    • Intrusion detection systems
    • Antivirus
    • Training
  • Physical security controls: These are the physical safeguards used to protect the following data:
    • Cameras ...

Get Advanced Infrastructure Penetration Testing now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.