Facilities and Physical Security
All IT infrastructure exists in the physical domain. Where components such as servers are defined by code, that code still exists on a machine. Cloud-based services, such as infrastructure or software as a service, still have code on hardware. Likewise, the security of your data also comes with physical concerns. Malicious actors can attempt to break into data centers to insert listening devices or damage and destroy equipment. Critical cabling and electronics can be destroyed by accidental fires, and data centers are susceptible to the effects of natural disasters such as floods and earthquakes.
In this chapter, you will learn how to secure information systems by securing the premises. This is known as physical security. Risks of attacks on the valuable data inside your organization’s premises come from various sources, including wireless spoofing, social engineering, and data exfiltration through USB devices and smartphones.
Locations...