What does CIA stand for in cybersecurity?
Confidentiality, Integrity, and Availability, the three core goals of information security. It has nothing to do with the intelligence agency.
Why is the CIA triad important?
It gives security a clear structure. Every control, risk, and breach can be understood as protecting or failing one of the three goals, which makes it the mental model professionals use daily and the basis of frameworks like SOC 2.
Can you give an example of the CIA triad?
An online store: card details kept private (confidentiality), prices and orders kept accurate (integrity), and the site kept online during a sale (availability).
What is the difference between confidentiality and integrity?
Confidentiality is about who can see the data. Integrity is about whether the data is accurate and unaltered. You can have one without the other, a public document (no confidentiality) can still have perfect integrity.
Is the CIA triad still relevant?
Yes. Despite newer additions like authenticity and non-repudiation, the triad remains the foundational model taught and used across the whole industry.
Get one clear security briefing a month, what auditors changed, what attackers changed, and nothing else. Subscribe to the Securion monthly briefing.