YOU MIGHT ALSO LIKE
ASSOCIATED TAGS
_ngcontent  _nghost  c257345503  c3609044789  c844385722  carousel  citation  controls  footnote  inline  inserted  placeholder  source  sources  version  
LATEST POSTS

What are the four types of security controls?

...building upon the foundation of administrative policies and technical infrastructure, we turn our attention to the operational mechanics that govern how security frameworks actively respond to threats. While preventive and detective safeguards form our primary line of defense, a complete security posture requires robust mechanisms for handling incidents once they unfold.

Below is the continuation and comprehensive conclusion of our expert analysis into the core types of security controls.

3. Corrective Controls: Mitigating Damage and Restoring Order

When a security breach or system failure successfully bypasses preventive and detective measures, corrective controls step in to minimize the impact and restore normalcy. These safeguards act as the clean-up and remediation crew, ensuring that an isolated incident does not cascade into a catastrophic organizational failure.

Corrective controls operate reactively. Their primary goal is to shorten the "dwell time" of an attacker, plug the newly discovered security holes, and bring systems back to a secure, known state.

Key Examples of Corrective Controls:

  • System Patching and Remediation: Applying emergency patches or updating configurations to fix the specific vulnerability that was exploited during an attack.

  • Data Restoral and Backups: Utilizing immutable, offline data backups to restore corrupted or encrypted files following a ransomware attack.

  • Network Isolation and Quarantine: Automatically disconnecting a compromised endpoint (such as a malware-infected laptop) from the corporate network to prevent lateral movement.

  • Incident Response Execution: Following pre-defined protocols to isolate compromised accounts, revoke active sessions, and reset administrative credentials.

Expert Insight: The effectiveness of a corrective control is heavily measured by Recovery Time Objective (RTO) and Recovery Point Objective (RPO). Organizations must regularly test their backup restoration and incident playbooks to ensure these controls perform seamlessly under pressure.

4. Deterrent Controls: Psychological Barriers and Threat Discouragement

Unlike preventive controls that physically or technically block a threat, deterrent controls are designed to discourage potential attackers from initiating a breach in the first place. These controls target the psychological and decision-making calculus of malicious actors or negligent insiders by raising the perceived risk of getting caught.

Deterrent controls rely on visibility, policy communication, and the threat of legal or internal consequences. While they cannot stop a fully automated botnet or an entirely irrational threat actor, they are highly effective against opportunistic attackers and casual rule-breakers.

Key Examples of Deterrent Controls:

  • System Login Banners: Displaying legal notices before a user logs into a network or application, explicitly stating that all activity is monitored and unauthorized access will be prosecuted.

  • Visible Surveillance Equipment: Prominently placing security cameras, motion sensors, and alarm system signage around physical server rooms or facilities.

  • Audit Logging and Monitoring Awareness: Making employees and contractors fully aware that their digital footprints, keystrokes, or file accesses are actively logged and reviewed.

  • Disciplinary Policies: Clearly communicating the penalties for security violations—such as termination or legal action—within the employee handbook.

The Security Control Matrix: Categorical vs. Functional Alignment

To truly master security architecture, organizations must understand that security controls are viewed through two distinct lenses: what they are (structural categories) and what they do (functional types).

Functional TypeAdministrative ExampleTechnical ExamplePhysical Example
PreventivePassword complexity policiesFirewalls and Multi-Factor Authentication (MFA)Biometric locks and turnstiles
DetectiveRegular security audits and compliance reviewsSecurity Information and Event Management (SIEM)Closed-Circuit Television (CCTV) monitoring
CorrectiveIncident response and disaster recovery plansAutomated endpoint quarantine and backup restoresAutomated fire suppression systems
DeterrentPublished acceptable use and disciplinary policiesExplicit login warning screensSecurity guard patrols and warning signs

Best Practices for Implementing a Balanced Control Framework

Deploying isolated security tools rarely results in a secure environment. To maximize the value of security controls, organizations should adopt a holistic, strategic implementation roadmap:

  1. Embrace Defense-in-Depth: Never rely on a single control type. If a preventive technical control (like a firewall) fails, a detective control (like an IDS) should catch the anomaly, followed by a corrective control (like automated isolation) to contain it.

  2. Align with Recognized Frameworks: Map your security controls against industry-standard frameworks such as NIST SP 800-53, ISO/IEC 27001, or the CIS Controls. These frameworks provide comprehensive baselines that ensure no vital domain is accidentally overlooked.

  3. Continuously Test and Validate: Security controls degrade over time due to system updates, corporate growth, or emerging attack vectors. Regular vulnerability assessments, penetration testing, and red-team exercises are vital to verify that your controls function as intended.

  4. Balance Security and Usability: Overly restrictive technical or physical controls often prompt users to find insecure workarounds ("shadow IT"). Ensure that administrative guidelines and technical controls strike a practical balance between friction and protection.

Conclusion

Understanding the four functional types of security controls—Preventive, Detective, Corrective, and Deterrent—alongside their administrative, technical, and physical foundations, provides the blueprint for an elite cybersecurity posture. No single control can guarantee absolute safety against modern, sophisticated threat actors. However, by weaving these diverse safeguards into a cohesive, multi-layered defensive matrix, organizations can drastically reduce their risk profile, protect critical digital and physical assets, and ensure rapid resilience when incidents inevitably occur.

What specific security framework or compliance standard is your organization currently using to map out these controls?

💡 Key Takeaways

  • Is 6 a good height? - The average height of a human male is 5'10". So 6 foot is only slightly more than average by 2 inches. So 6 foot is above average, not tall.
  • Is 172 cm good for a man? - Yes it is. Average height of male in India is 166.3 cm (i.e. 5 ft 5.5 inches) while for female it is 152.6 cm (i.e. 5 ft) approximately.
  • How much height should a boy have to look attractive? - Well, fellas, worry no more, because a new study has revealed 5ft 8in is the ideal height for a man.
  • Is 165 cm normal for a 15 year old? - The predicted height for a female, based on your parents heights, is 155 to 165cm. Most 15 year old girls are nearly done growing. I was too.
  • Is 160 cm too tall for a 12 year old? - How Tall Should a 12 Year Old Be? We can only speak to national average heights here in North America, whereby, a 12 year old girl would be between 13

❓ Frequently Asked Questions

1. Is 6 a good height?

The average height of a human male is 5'10". So 6 foot is only slightly more than average by 2 inches. So 6 foot is above average, not tall.

2. Is 172 cm good for a man?

Yes it is. Average height of male in India is 166.3 cm (i.e. 5 ft 5.5 inches) while for female it is 152.6 cm (i.e. 5 ft) approximately. So, as far as your question is concerned, aforesaid height is above average in both cases.

3. How much height should a boy have to look attractive?

Well, fellas, worry no more, because a new study has revealed 5ft 8in is the ideal height for a man. Dating app Badoo has revealed the most right-swiped heights based on their users aged 18 to 30.

4. Is 165 cm normal for a 15 year old?

The predicted height for a female, based on your parents heights, is 155 to 165cm. Most 15 year old girls are nearly done growing. I was too. It's a very normal height for a girl.

5. Is 160 cm too tall for a 12 year old?

How Tall Should a 12 Year Old Be? We can only speak to national average heights here in North America, whereby, a 12 year old girl would be between 137 cm to 162 cm tall (4-1/2 to 5-1/3 feet). A 12 year old boy should be between 137 cm to 160 cm tall (4-1/2 to 5-1/4 feet).

6. How tall is a average 15 year old?

Average Height to Weight for Teenage Boys - 13 to 20 Years
Male Teens: 13 - 20 Years)
14 Years112.0 lb. (50.8 kg)64.5" (163.8 cm)
15 Years123.5 lb. (56.02 kg)67.0" (170.1 cm)
16 Years134.0 lb. (60.78 kg)68.3" (173.4 cm)
17 Years142.0 lb. (64.41 kg)69.0" (175.2 cm)

7. How to get taller at 18?

Staying physically active is even more essential from childhood to grow and improve overall health. But taking it up even in adulthood can help you add a few inches to your height. Strength-building exercises, yoga, jumping rope, and biking all can help to increase your flexibility and grow a few inches taller.

8. Is 5.7 a good height for a 15 year old boy?

Generally speaking, the average height for 15 year olds girls is 62.9 inches (or 159.7 cm). On the other hand, teen boys at the age of 15 have a much higher average height, which is 67.0 inches (or 170.1 cm).

9. Can you grow between 16 and 18?

Most girls stop growing taller by age 14 or 15. However, after their early teenage growth spurt, boys continue gaining height at a gradual pace until around 18. Note that some kids will stop growing earlier and others may keep growing a year or two more.

10. Can you grow 1 cm after 17?

Even with a healthy diet, most people's height won't increase after age 18 to 20. The graph below shows the rate of growth from birth to age 20. As you can see, the growth lines fall to zero between ages 18 and 20 ( 7 , 8 ). The reason why your height stops increasing is your bones, specifically your growth plates.