ABSTRACT

One primary goal of a computer system and data network security program is to prevent unauthorized access to computer systems and facilities. Another goal, should unauthorized access occur, is to prevent the misuse of, or damage to, computer and network assets. This chapter brings together fundamental security concepts to provide data center managers and data network managers with an overview of the data security function. Computer systems and data networks must be secured against three types of violations: unauthorized access, misuse, and damage. When customers are granted direct access to the organization’s computer systems via the company’s or a third party’s data network, the usual credit checks and business viability verifications need to be performed. The trend is toward much broader access to an organization’s computer systems. Examples are students and staff having direct access to college computer systems, customers and suppliers connecting into companies’ systems, and private citizens accessing government data.