From the course: CSSLP Cert Prep: 2 Secure Software Requirements

Unlock the full course today

Join today to access over 22,500 courses taught by industry experts or purchase this course individually.

Labeling

Labeling

From the course: CSSLP Cert Prep: 2 Secure Software Requirements

Start my 1-month free trial

Labeling

- [Instructor] Having a data classification policy is a fantastic first step towards securing your data. But if no one takes action on that policy, if it just sits in a folder collecting virtual dust, then it hasn't really changed anything, has it? The crucial connection between your data classification policy and the security controls that provide true data protection are the labels that help data owners and data custodians determine which controls are appropriate for each data set. At a high level, there are two labels that you'll want to apply to the data your apps process and store. The first label is sensitivity. This label helps you determine who should have access to that data based on how much harm someone could do to your organization if that data fell into the wrong hands. The second label is impact. This label helps you measure that level of harm that an adversary could inflict on your organization if they…

Contents