What Is the Confidentiality, Integrity, and Availability (CIA) Triad?

The CIA triad is a well-known cybersecurity model. It helps an organization think through the various layers of security that are needed to protect the IT infrastructure.

Figure 1-1 depicts the CIA key concepts as follows:

  1. Confidentiality—To ensure only authorized users and processes can read the data

  2. Integrity—To ensure only authorized users and processes can modify the data

  3. Availability—To ensure the data are readily available to authorized users and processes

The C I A triad.

FIGURE 1-1 The CIA Triad


The CIA triad is a very powerful model because it can be used to understand ...

Get Auditing IT Infrastructures for Compliance, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.