Cyber security comprises a broad spectrum of technical, organisational and procedural measures for confidentiality, integrity and availability of information. It combines risk assessment, protective controls and detection mechanisms and requires cross-functional coordination plus continuous adaptation to evolving threats.
Use this profile to understand the building block briefly, place it in the model, and switch to the 360° assessment when needed.
Cyber security protects digital systems, data, and networks with technical, organizational, and procedural measures against attacks, misuse, and failures.
The field grew as computers, operating systems, web applications, and cloud services became interconnected. What began as isolated system hardening turned into an enterprise-wide risk domain: secure access, close vulnerabilities, detect incidents, and limit damage. NIST's Cybersecurity Framework and the OWASP Top 10 reflect this later consolidation into risk-based guidance for organizations.
Think of cyber security as a defense chain in four steps: verify identities, harden systems and networks, protect data with cryptography, and detect, contain, and recover from attacks early. Threat modeling shows where an attack path can enter the defense; security controls implement the countermeasures. It only works as a continuous loop of prevention, detection, and response.
Defines who proves identity and what they are allowed to access.
Makes data unreadable or verifiable without a key and protects transmission and storage.
Technical and organizational measures such as hardening, segmentation, logging, or approval workflows.
Finds, assesses, and remediates weaknesses before they are exploited.
Analyzes possible attack paths in a system before something is built or changed.
A structured process for detecting, containing, investigating, and recovering from an incident.
Cyber security matters in architecture decisions, cloud adoption, web and API operations, procurement, and incident exercises. Its value rises when risks are prioritized and controls are chosen well; too many or misplaced measures add friction, cost, and complexity. There is no complete security — what matters is making attacks less likely and less effective.
Where this building block is located in the topic model.
No structure path available.
Explore how this building block connects to concepts, methods, technologies, and tools.
These sources establish the term and its professional meaning.
All direct connections of the current building block in a compact text view.
This classification shows where the building block typically matters, how demanding it is, and what kind of impact it has in the model.
The level within the organization (enterprise, domain, team) at which the AssetBlock is applied.