Information sensitivity
|
|
This article needs additional citations for verification. Please help improve this article by adding citations to reliable sources. Unsourced material may be challenged and removed. (July 2007) |
|
|
The examples and perspective in this article deal primarily with the United States and do not represent a worldwide view of the subject. Please improve this article and discuss the issue on the talk page. (December 2010) |
Information sensitivity is the control of access to information or knowledge that might result in loss of an advantage or level of security if disclosed to others who might have low or unknown trustability or undesirable intentions.
Loss, misuse, modification or unauthorized access to sensitive information can adversely affect the privacy or welfare of an individual, trade secrets of a business or even the security, internal and foreign affairs of a nation depending on the level of sensitivity and nature of the information.
Contents |
[edit] Levels
The term classified information generally refers to information that is subject to special security classification regulations imposed by many national governments. The term "Unclassified" as used in the below refers to information that is not subject to security classification regulations. Information can be reclassified to a different level or declassified (made available to the public) depending on changes of situation or new intelligence.
[edit] Non-classified
[edit] Public information
This refers to information that is already a matter of public record or knowledge.
[edit] Personal information
This is information belonging to a private individual, but the individual commonly may share with others for personal or business reasons. This generally includes contact information such as addresses, telephone numbers, e-mail addresses, and so on. It may be considered a breach of privacy to disclose such information, but for most people its disclosure is not considered a serious matter.
However, there are situations in which the release of personal information could have a negative effect on its owner. For example, a person trying to avoid a stalker will be inclined to further restrict access to such personal information.
[edit] Routine business information
This includes business information that is not subjected to special protection and may be routinely shared with anyone inside or outside of the business.
[edit] Private information
Information is private if it is associated with an individual. A person's SSN or SIN, credit card numbers, and other financial information may be considered private if their disclosure might lead to crimes such as identity theft or fraud.
Some types of private information, including records of a person's health care, education, and employment may be protected by privacy laws. Unauthorized disclosure of private information can make the perpetrator liable for civil remedies and may in some cases be subject to criminal penalties.
[edit] Confidential business information
Confidential business information refers to information whose disclosure may harm the business. Such information may include trade secrets as described in the "Economic Espionage Act of 1996 (18 U.S.C. §§ 1831–1839)". In practice, it may include sales and marketing plans, new product plans, and notes associated with patentable inventions. In publicly held companies, confidential information may include "insider" financial data whose disclosure is regulated by the United States Securities and Exchange Commission.
[edit] Classified
|
|
This section is in a list format that may be better presented using prose. You can help by converting this section to prose, if appropriate. Editing help is available. (June 2010) |
[edit] Confidential
- Requires protection
- Unauthorized disclosure could damage national security e.g. compromise information that indicates the strength of armed forces or disclosure of technical information about weapons, such as performance characteristics, test data, design, and production data.
[edit] Secret
- Requires substantial protection
- Unauthorized disclosure could seriously damage national security
- Wrongful disclosure could lead to a disruption of foreign relations, impair a program or policy directly related to national security, reveal significant military plans or intelligence operations, or compromise significant scientific or technological development relating to national security
- Most classified information falls into this category
- Penalty can be a large fine and/or a 5 year to life imprisonment sentence
[edit] Top secret
- Requires the highest degree of protection
- Unauthorized disclosure could severely damage national security
- Wrongful disclosure could lead to war against a nation or its allies, disrupt vital relations, compromise vital defense plans or cryptologic and communications intelligence systems, reveal sensitive intelligence operations, or could jeopardize a vital advantage in an area of science or technology
- Penalty can range from 5 years to life imprisonment or even the death penalty if considered treason
[edit] Sensitivity Indicator in the USA
In the intelligence community the sensitivity indicator (aka. sensitivity label) specifies the level of secrecy of a project, document or piece of information by its relevancy to national security. Only those with appropriate security clearance can access information of certain sensitivity and might face additional special access restrictions.
The indicator can also be the name of a classified project such as "Project Blue Book" or "Ultra", further restricting access to or handling of information.
[edit] See also
- Espionage
- Federal Standard 1037C and the National Information Systems Security Glossary
- Mandatory Access Control
- Seal of the Confessional
- Privacy protocol