anything that has value to the organization

Note 1 to entry: In the context of information security, two kinds of assets can be distinguished:

  • the primary assets:
    • information;
    • business processes and activities;
  • the supporting assets (on which the primary assets rely) of all types, for example:
  • site;
  • organization’s structure.