Defense in Depth
Kind: principle
Layer: Security Core
Record: architecture:defense-in-depth
Severity: mandatory
Scope: system, infrastructure, application
Canonical: Ontology
A design rule that several independent security controls protect each asset, so one failed control does not expose it.
Listed in Architecture principles, after Security by Design and before Least Privilege.