Chapter 1. Principles of Information Security To secure Windows Server 2003, you can start by learning the principles of information security. These principles will not only guide you in selecting technologies, but they also will show you where these technologies are weak. If you understand these dictums, then you can think independently about operating systems, applications, security technologies, hardening guides, and security gurus. You will be better equipped to use the information in this book, in addition to information from Microsoft documentation, from the Internet, and from conferences, personal experiences, and periodicals. You will be able to transfer your knowledge to new features added to Windows Server 2003, to your current network of Windows systems, and to your future responsibilities encompassing other operating systems, the networks they run on, and the applications and data that reside upon them.Most of all, you will be able to stop reacting to security incidents and start proactively preventing them.This chapter will get you started by explaining these principles. Because this book is a technical security reference for Windows Server 2003, it will show you how to implement security principles using the technologies and controls that are built into the server. |