Suomi.fi for Service Developers
Go directly to contents.
VAHTI best practices
Digital security risk management

To get the best help for your situation, first answer the questions on the guide's start page.

Get an overview of information security

Information security secures data, systems and operations

Information security means securing data, systems and operations Information security principles include

  • confidentiality
  • integrity
  • availability.

Updated: 29/10/2024

Ensuring information security is the responsibility of the entire organisation

Information security ensures the availability, confidentiality and integrity of information. Everyone in an organisation must have a general understanding of the organisation’s information security

  • principles
  • key processes
  • roles
  • responsibilities.

Updated: 29/10/2024

Information security glossary

Below you can find some of the key concepts and definitions related to information security.

Updated: 29/10/2024

The security environment is constantly changing

Technology and the digital operating environment are developing rapidly. To keep up with the development, each organisation must develop

  • safety culture
  • staff competence
  • their observation skills and
  • risk management.

The security environment related to information security is constantly changing, for example, in the following ways:

  • organisations adopt new systems and services
  • supply and service chains become more complex
  • technological solutions related to the handling of information security threats are evolving
  • technological solutions related to cybercrime are evolving.

Updated: 29/10/2024

Security breaches can have serious consequences

In the event of security breaches, costs are incurred for their management, reporting and correction. In addition to the organisation, security breaches can have significant consequences on its

  • human resources
  • managers
  • customers and
  • stakeholders.

At worst, security breaches can lead to extensive human suffering, significant compensation obligations and even bankruptcy of the organisation.

Read more about what benefits taking care of digital security offers for organisations on the guide’s page Identify the benefits.

Updated: 29/10/2024

Communicate the roles and responsibilities to the employees

Information security risks are managed and the organisation’s perception capacity is developed by actively communicating with the staff about

  • information security roles and responsibilities, and
  • the processes related to responsibilities.

Updated: 29/10/2024

Are you satisfied with the content on this page?

Checklist