Critical Infrastructure Security: This domain ensures the protection of systems, applications, networks, data, and digital assets that underpin national security, economic well-being, and public safety. Frameworks like NIST and guidance from agencies like CISA are essential in this context.
Network Security: It focuses on preventing unauthorized access to network resources, detecting ongoing cyberattacks, and providing secure access to authorized users.
Endpoint Security: This aspect is dedicated to shielding servers, desktops, laptops, and mobile devices—the primary entry points for cyberattacks. It also encompasses defending the network against adversaries who leverage endpoints to initiate attacks.
Application Security: Safeguarding on-premises and cloud-based applications from unauthorized access and addressing vulnerabilities in application design.
Cloud Security: Protecting an organization’s cloud-based services and assets, following a shared responsibility model where the provider secures services, and the customer safeguards their data and assets.
Information Security: This domain focuses on safeguarding an organization’s vital information against unauthorized access, disclosure, or alteration. It encompasses digital files, paper documents, and other forms of data.
Mobile Security: Addressing the unique challenges presented by smartphones and mobile devices, including mobile application management, enterprise mobility management, and unified endpoint management.