Defense in Depth

Kind: principle

Layer: Security Core

Record: architecture:defense-in-depth

Severity: mandatory

Scope: system, infrastructure, application

Canonical: Ontology

A design rule that several independent security controls protect each asset, so one failed control does not expose it.

Listed in Architecture principles, after Security by Design and before Least Privilege.

Requires

Reinforces

Enables

Conflicts with

In tension with

Tensions

Violated by

Refactored by

Severity

Category

Reinforced by

Linked from