Skip to content

Integrity

What is Integrity?

The principle of ensuring that data is accurate, complete, and has not been modified by unauthorised parties. One of the three pillars of the CIA triad.

Information Security

Each of these is named in at least one of the same controls as integrity. The number is how many controls name both.

What the standards actually require on integrity

Requirements naming integrity across 6 standards, quoted from the control text.

Requires the confidentiality or integrity, as the organization determines, of transmitted information to be protected, so that data in transit cannot be read or altered by parties along the path.

NIST800-SC-8 · Transmission confidentiality and integrity

The source and integrity of training data for artificial intelligence models is verified.

ISM-2087 · The source and integrity of training data for artificial intelligence models is verified.
FedRAMP High11 controls

Implement cryptographic mechanisms to protect remote access sessions; FIPS-validated.

AC-17(2) · Protection of Confidentiality and Integrity Using Encryption

GLI-33 sports event data + provider certification + regulatory reporting. SPORTS EVENT DATA INTEGRITY: source-of-truth for events (start time + end time + scores + outcomes + voiding events + abandonment + suspension + result-correction);

GLI33-Sports-Integrity-DataProviders-Compliance · GLI-33 Sports Event Data Integrity, Provider Certification and Regulatory Reporting

Security Dimension 6 Data Integrity per X.805 Clause 6.6: Data Integrity ensures the correctness or accuracy of data. The data is protected against unauthorized modification + deletion + creation + replication and provides an indication of these unauthorized a...

X805-Dim6-Data-Integrity-Correctness-Accuracy-Unauthorized-Modification-Deletion-Detection · ITU-T X.805 Security Dimension 6 - Data Integrity + Correctness + Accuracy + Unauthorized Modification Prevention + Deletion Detection + Hashing + HMAC + Digital Signatures + Merkle Trees + Blockchain Integrity + File Integrity Monitoring (FIM)

UR E27 requires equipment manufacturers to provide Software Bill of Materials (SBOM) and demonstrate secure development. SBOM contents per CISA SBOM Minimum Elements + SPDX or CycloneDX format: component name + version + supplier + license + dependency relatio...

IACS-UR-E27-SBOM-SecureDev-TypeApproval-SoftwareIntegrity · IACS UR E27 - Software Bill of Materials + Secure Development Lifecycle + Type Approval + Software Integrity

Questions people ask about integrity

What is Integrity?
The principle of ensuring that data is accurate, complete, and has not been modified by unauthorised parties. One of the three pillars of the CIA triad.
Why is Integrity important for compliance?
Integrity is a key concept in Information Security. Understanding integrity helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Integrity?
Integrity appears in the requirement text of NIST SP 800-53 Rev 5, Australian Information Security Manual, FedRAMP High, GLI-33 - Gaming Laboratories International Event Wagering Systems, ITU-T X.805 - Security Architecture for End-to-End Communications. Across these standards we have identified 64 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about Integrity?
Explore our compliance framework pages to see how integrity applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how Integrity applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.