integrity,
availability, and confidentiality.
– Loss of integrity.
• Database integrity refers to the requirement that information be protected from
improper modification. Modification of data includes creation, insertion, updating,
changing the status of data, and deletion. Integrity is lost if unauthorized changes
are made to the data by either intentional or accidental acts. If the loss of system or
data integrity is not corrected, continued use of the contaminated system or
corrupted data could result in inaccuracy, fraud, or erroneous decisions.
– Loss of availability.
• Database availability refers to making objects available to a human user or a
program to which they have a legitimate right.
– Loss of confidentiality.
• Database confidentiality refers to the protection of data from unauthorized
disclosure. The impact of unauthorized disclosure of confidential information can
range from violation of the Data Privacy Act to the jeopardization of national
security. Unauthorized, unanticipated, or unintentional disclosure could result in loss
of public confidence, embarrassment, or legal action against the organization.