According to ISO/IEC 27000, which of the following BEST defines 'information security'?
-
A
The protection of information from a wide range of threats in order to ensure business continuity, minimize business risk, and maximize return on investments.
-
B
The preservation of confidentiality, integrity, and availability of information; in addition, other properties, such as authenticity, accountability, non-repudiation, and reliability can also be involved.
-
C
A systematic approach to establishing, implementing, operating, monitoring, reviewing, maintaining, and improving an organization's information security to achieve business objectives.
-
D
The process of preventing unauthorized access, use, disclosure, disruption, modification, inspection, recording, or destruction of information.