Categories #
-
Technical:
- Controls implemented using technology.
- Examples: Firewalls, antivirus software, system policies within operating systems.
-
Managerial:
- Policies and procedures for managing security.
- Examples: Security policy documentation, onboarding policies, compliance procedures.
-
Operational:
- Controls relying on human interaction and processes.
- Examples: Security guards, awareness training, reception desks.
-
Physical:
- Measures restricting physical access.
- Examples: Guard shacks, badge readers, fences, locks.