For any organisation, the security objectives are met when:
Information systems are available and usable to authorised users whenever required
(availability);
Data and information are disclosed only to those who have a right to know it (confidentiality); and
Data and information are protected against unauthorised modification or destruction (integrity).