40. Defense in Depth

Defense in depth is a layered security approach. Instead of relying on one control, it uses multiple types of controls to protect the organization.

The idea is that if one layer fails, other layers still provide protection. This makes attacks harder and reduces the chance that one weakness will expose everything.

Defense in depth includes different control areas:

Defense in Depth 2

Main Idea
Defense in depth protects systems through multiple layers of administrative, technical, and physical controls.


discord :