Study for the ITIL 4 Foundation Exam. Utilize flashcards and multiple-choice questions, each with hints and explanations. Prepare thoroughly for your certification exam!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


What does integrity refer to in the context of information security?

  1. A security objective ensuring information is available to all personnel

  2. A security objective ensuring information is only modified by unauthorized personnel

  3. A security objective ensuring information is only modified by authorized personnel and activities

  4. A security objective ensuring information is destroyed when no longer needed

The correct answer is: A security objective ensuring information is only modified by authorized personnel and activities

In the context of information security, integrity refers to the assurance that information is accurate, reliable, and unaltered except by authorized individuals or processes. This principle is crucial for maintaining trust in the data and ensuring that it has not been tampered with or modified by unauthorized users. Choosing the focus on authorized personnel and activities highlights that integrity is not just about preventing changes but ensuring that any modifications are legitimate and carried out by those who have permission to do so. This means implementing controls and processes that enable authorized users to manage and update information while safeguarding it against unauthorized access or changes. This understanding aligns with the broader framework of information security, which encompasses confidentiality (ensuring information is not disclosed to unauthorized individuals), integrity (ensuring data is accurate and consistent), and availability (ensuring information is accessible to authorized users when needed). Each of these aspects plays a critical role in a comprehensive information security strategy.