Computer security is often divided into three distinct master categories, commonly referred to as controls:
Physical
Technical
Administrative
These three broad categories define the main objectives of proper security implementation. Within these controls are sub-categories that further detail the controls and how to implement them.