课程: ISC2 Certified Information Systems Security Professional (CISSP) (2024) Cert Prep

免费学习该课程!

今天就开通帐号,24,600 门业界名师课程任您挑!

Organizational processes

Organizational processes

- [Instructor] As a business function, information security must align itself with the many other functions taking place inside an organization. Now, we already talked about some of the routine administrative tasks that information security leaders take on when they're managing human resources and financial budgets. Those are pretty much the same concerns that any other manager in the organization has. Let's take a look at the specific business processes that have a real security impact. First, information security must align itself with the governance processes of the organization. These governance processes take place at many different levels. They may consist of an information governance committee that includes senior leaders with oversight of information security and data governance functions. The organization may also have a risk management committee consisting of executives charged with managing all risks to the organization. In publicly traded companies and nonprofit…

内容