security
Let an agent handle security by asset, threat, measure, rights and proportionality, giving defensive guidance only.
Research draft, second pass
A second pass drafted this model: the structure a model of this thing needs, and what is known about it in the world. The line under this one says how the second half was obtained - researched against sources, or recalled without web access, in which case nothing here was read anywhere and every claim is a lead to verify. Unreviewed either way.
written by Claude from model knowledge without web access - no source was read, every claim is a lead to verify
Researched by: Claude
Purpose and description
Let an agent handle security by asset, threat, measure, rights and proportionality, giving defensive guidance only.
The condition of being protected from danger, harm or threats, for people, property, organisations, information or states, and the measures that provide it, such as guards, checkpoints and border control.
What it is for: Protecting people, assets and information.
It can be assess risks and threats; apply proportionate measures; respond to incidents; protect rights while securing.
Distinguishing features
Freedom from threat
Physical, information, national and personal
Measures must be proportionate
Securities as financial instruments are separate
What it looks like
Locks, guards, checkpoints, fences, cameras and procedures.
How it is recognised
Security checkpoints and staff
Access control systems
Financial securities are a different sense
Related models
is a kind of - state
is threatened by - threats
is provided by - providers
is confused with - another sense
In practice
Families and kinds
physical security
information and cyber security
border and national security
personal security
food and energy security (extended senses)
Standards and regulation
ISO/IEC 27001
ISO 31000 risk management
Private security licensing
Human rights law on proportionality
Failure modes and hazards
Security theatre without real protection
Disproportionate intrusion
Single points of failure
Also called
+83
Where this came from
wikidata · CC0 1.0
Also registered as vr.tr.security-act
Drafted structure
Bundle to layer to finding to question, as the second pass will find it: 4 bundles · 8 layers · 8 findings · 16 questions.
Scope What is secured.
Scope decides measures.
Asset
People, property, data.
Asset
Protected asset.
- What is being protected? definition
- How valuable or sensitive is it? measurement
Threat
Risks.
Threat
Threats.
- What threats are realistic? boundary
- How likely and severe? measurement
Measures Protection.
Measures must fit the risk.
Controls
Physical and technical.
Controls
Controls.
- Which controls are in place? definition
- Do they address the threats? boundary
Standards
Frameworks.
Standards
Standards.
- Which standard guides the measures? provenance
- Is it certified? provenance
Incidents Response.
Incidents need response.
Response
Plans.
Response
Incident response.
- What is the incident response plan? action
- Who must be notified? boundary
Lessons
Improvement.
Lessons
Lessons learned.
- What was learned from past incidents? provenance
- What changed? provenance
Rights Proportionality.
Security must respect rights.
Proportionality
Balance.
Proportionality
Proportionality.
- Is the measure proportionate to the risk? boundary
- Are less intrusive options available? action
Oversight
Accountability.
Oversight
Oversight.
- Who oversees security measures? provenance
- How can people complain? action
What the second pass must settle
- Should security kinds be separate entries?
- How should the finance sense be split off?
- How should proportionality be recorded?