SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users...

10
SECURITY DESIGN PRINCIPLES GRAD SEC SEP 28 2017

Transcript of SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users...

Page 1: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITYDESIGN PRINCIPLES

GRAD SECSEP 28 2017

Page 2: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITY DESIGN PRINCIPLESEnsure complete mediation

Page 3: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITY DESIGN PRINCIPLESDefense in depth

Page 4: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITY DESIGN PRINCIPLESUse separation of responsibility

Page 5: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITY DESIGN PRINCIPLESHuman factors matter:

Users must buy into the security

Page 6: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITY DESIGN PRINCIPLESHuman factors matter:

The system must be usable

Page 7: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITY DESIGN PRINCIPLESHuman factors matter:

The system must be usable

Page 8: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITY DESIGN PRINCIPLESHuman factors matter:

The system must be usable

Page 9: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITY DESIGN PRINCIPLESHuman factors matter:

The system must be usable

Page 10: SECURITY DESIGN PRINCIPLES · 2019-08-30 · SECURITY DESIGN PRINCIPLES Human factors matter: Users must buy into the security The system must be usable Defense in depth Use separation

SECURITY DESIGN PRINCIPLES

Human factors matter:Users must buy into the security

The system must be usable

Defense in depth

Use separation of responsibility

Ensure complete mediation

Principle of least privilege