THE INFORMATION SECURITY MANAGEMENT SYSTEM

In spite of the views of many CISOs, securing an organization’s information assets has never really beenjustabout implementing technical security controls. The role of the traditional CISO within the typical IT department can play only a small part in solving the information security challenge. Impl...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Kouns, Jake, Kouns, Barry
Format: Buchkapitel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:In spite of the views of many CISOs, securing an organization’s information assets has never really beenjustabout implementing technical security controls. The role of the traditional CISO within the typical IT department can play only a small part in solving the information security challenge. Implementing technical security controls defined by the CISO is only a part of the larger issue of risk management. Today’s CISO needs to adopt, promote and lead the implementation of an Information Security Management System designed to protect the organization’s information assets and ensure the life and health of the business. The International Standard,