- Introduction
The Area collects and develops skills about ICT security with special emphasis on technical aspects. The purpose of ICT security is to protect confidentiality, integrity, and availability of data and services in information systems and TLC systems against damaging events that can be intentional (attacks) or accidental. The protection tools (countermeasures), used to reduce both the probability of damaging events and the extent of the damage they produce, are selected by methodologies of risk analysis and risk management. Countermeasures may be organizational (e.g., company policies for managing ICT security and associated procedures, as selection of personnel and allocation of roles and responsibilities), physical (e.g., armoured doors and unbreakable containers) and technical (i.e., implemented in hardware, software and firmware). Technical aspects of ICT security, which the Area is essentially focussed on, include selection (within risk analysis and risk management), design, implementation, installation, configuration, and testing of technical countermeasures (security functions).
