Understanding The Purpose Of Security Software
The term security software is used generally to refer to a computer program or application that helps make a computer system or computer network secure. This software essentially functions to protect data, networks and computing power. It safeguards the confidentiality, integrity and availability of electronic information that are either processed or saved in computer systems. Computer network protection is important because it protects the database and other information sources of an organization to be used illegally. Protection of computer power is as important as the former as it affects the efficiency of expensive supercomputers that are used to store highly classified data such as national security information.
Security software may be categorized into sub-groups. Some of the classifications of this product are antivirus software, cryptographic software, firewall software, free security software, Linux security software, operating system security and spyware removal. There are several ways in using security software to secure a computer system. These approaches may be used or practiced individually or they may be combined with other approaches. The following are valid ways of obtaining computer security:
1. Trust all software to abide by security policy but the software is not trustworthy
2. Trust all software to abide by security policy and the software is trustworthy 3. Trust no software but implement a security policy that has mechanisms that are not dependable 4. Trust no software but implement a security policy that has trustworthy mechanisms The most ideal approach in achieving computer security is the use of both the second and fourth approach. The exclusive use of the second approach translates to very high costs and giving users limited access. Using only the fourth approach is considered as a practical approach since it allows multiple degrees of freedom for its users. Meanwhile, the first and third approach usually leads to computer security failure. Most systems employ the first approach unknowingly. The efficiency of installed security software however, will still be compromised despite its potential if the operating system of the computer network it is supposed to protect, possesses some fundamental flaws in security. In addition, the more secure a computer network, the less convenient and user-friendly it becomes. Depending on the priority of the management, one may be sacrificed for the other. As has been mentioned previously, computer enthusiasts use security software to prevent confidential data from being accessed or used by users that not authorized. Conventionally, computer data and programs are made secure by using passwords and digital certificates to determine authorized users from non-authorized users. Biometric techniques or the scanning of fingerprints, eyes or voice may also be used for authentication purposes. At present, security software that allows face recognition is also used. The TrueFace system from Miros is capable of distinguishing different face appearances using various hair styles. After authentication, data undergoes cryptography to encrypt sensitive data. It is however, beyond the capability of security software to ensure that data will not be used maliciously or illegally by an authorized user. In this aspect, it is important to strike a balance between technology and management of personnel.
|