Cambridge A-Level Computer Science 9618 – Data Security
6.1 Data Security
Objective
Explain the difference between the terms security, privacy and integrity of data.
Key Definitions
Security: Measures and controls that protect data from unauthorised access, modification, or destruction.
Privacy: The right of individuals or organisations to control how their personal or sensitive information is collected, used, and disclosed.
Integrity: The assurance that data is accurate, complete, and has not been altered in an unauthorised manner.
Comparison of the Three Concepts
Term
Definition
Primary Concern
Security
Technical and procedural safeguards that prevent unauthorised access, disclosure, alteration, or destruction of data.
Preventing breaches and attacks.
Privacy
The right of a data subject to decide how personal data is collected, stored, processed, and shared.
Respecting consent and lawful use.
Integrity
Ensuring that data remains accurate, consistent, and trustworthy throughout its lifecycle.
Detecting and preventing unauthorised changes.
How the Concepts Interrelate
While each term focuses on a distinct aspect of data protection, they overlap in practice:
Security mechanisms (e.g., encryption, access controls) support privacy by restricting who can view personal data.
Integrity checks (e.g., checksums, digital signatures) are part of security controls that detect tampering.
Privacy policies often mandate integrity requirements to ensure that personal data is not corrupted.
Real‑World Examples
Security: A bank uses multi‑factor authentication to stop unauthorised users from accessing accounts.
Privacy: An e‑commerce site asks for explicit consent before sharing a customer's email address with third‑party marketers.
Integrity: A hospital employs hash verification on patient records to guarantee that no accidental or malicious alterations have occurred.
Suggested Diagram
Suggested diagram: Venn diagram showing the overlap between security, privacy, and integrity, with examples placed in each intersecting region.
Summary
Understanding the distinctions and connections between security, privacy, and integrity is essential for designing robust data protection strategies. Security provides the tools, privacy defines the rights, and integrity ensures the trustworthiness of the data.