Question

Security governance must be enforced at all levels of an organization. But many still do not...

Security governance must be enforced at all levels of an organization. But many still do not understand quite what security governance is, what is its main objective, and how it should be integrated within existing structures in an organization.

"Governance". briefly state

(a) what governance is from a security perspective,

(b) it's the main objective, and (c) how should it be integrated into an organization.

0 0
Add a comment Improve this question Transcribed image text
Answer #1

It is quite common in today's IT organizations that inspite of the mandatory practice  that security governance must be enforced at all levels of an organization ,many still do not understand quite what security governance is and its  main objective, and how it should be integrated within existing structures in an organization.

Here is the glance on  the Security governance definitions,aims and ways it could be integrated

(a) Governance from a security prospective could be defined as :
the set of responsibilities and practices exercised by the board and executive management with the goal of providing strategic direction,ensuring that objectives are achieved, ascertaining that all the existing ,
future risks are managed appropriately and verifying that the enterprise’s resources are used responsibly

(b)security governance aims at providing directives to the senior management with an agenda
to implement a security program that ensures sufficient security to protect the important information of an organization.

(c)There are four phases where we could  Integrate IT and Corporate Governance into an organization.
Phase 1—The executive Board Gets Involved.
Phase 2—Ensure Value Creation. Phase 3—Stakeholder Management.
Phase 4—IT Management Support

Add a comment
Know the answer?
Add Answer to:
Security governance must be enforced at all levels of an organization. But many still do not...
Your Answer:

Post as a guest

Your Name:

What's your source?

Earn Coins

Coins can be redeemed for fabulous gifts.

Not the answer you're looking for? Ask your own homework help question. Our experts will answer your question WITHIN MINUTES for Free.
Similar Homework Help Questions
  • Examining the Importance of Data Governance in Healthcare By Shannon Fuller, MBA HEALTHCARE HAS ALWAYS focused...

    Examining the Importance of Data Governance in Healthcare By Shannon Fuller, MBA HEALTHCARE HAS ALWAYS focused on managing information from application to application, instead of looking at information holistically and defining it holistically. The industry's shift of focus onto analytics—whether it's for predictive analytics or modeling for improved readmission rates—puts the focus back on foundational data. Ihat's what is needed for things like population health, which is increasingly important in healthcare. Patient data isn't held or uséd solely in electronic...

  • Data Management (20 points) Data governance involves the supervision, monitoring, and control of an organization’s data...

    Data Management (20 points) Data governance involves the supervision, monitoring, and control of an organization’s data assets. Its main concerns are data quality, appropriateness, and cost-effectiveness of the controls. It is difficult because organizations typically have a lot of old data, which is of unknown quality. Imagine that you must collect and assess the quality and appropriateness of data held by a large, multi-national organization. What steps you would take? Include how you would address network, security, and ethical considerations...

  • Case Study Demand Forecasting For an organization to provide customer delight it is important that organization...

    Case Study Demand Forecasting For an organization to provide customer delight it is important that organization can understand what customer wants and how much do they want. If an organization can gauge future demand that manufacturing plan becomes simpler and cost-effective. The process of analyzing and understanding current and past information to understand future patterns through a scientific and systemic approach is called forecasting. And the process of estimating the future demand of the product in terms of a unit...

  • Please briefly answer the following questions: How do managers assist an organization to achieve ...

    Please briefly answer the following questions: How do managers assist an organization to achieve its goals and objectives? What factors make the manager’s universe complex? Where are managers located within an organization’s hierarchy? How are the different levels similar? How are they different? What are the regular activities that all managers perform? Which of these activities is called the “first” function? Why? How do the functions in question 4 apply to the three levels of management found in most organizations?...

  • The discussion: 150 -200 words. Auditing We know that computer security audits are important in business....

    The discussion: 150 -200 words. Auditing We know that computer security audits are important in business. However, let’s think about the types of audits that need to be performed and the frequency of these audits. Create a timeline that occurs during the fiscal year of audits that should occur and “who” should conduct the audits? Are they internal individuals, system administrators, internal accountants, external accountants, or others? Let me start you: (my timeline is wrong but you should use some...

  • When performing a gap analysis, one must have an understanding of the desired future or "to be" state. For cybersecurity focused gap analyses, we frequently use IT security controls as the mea...

    When performing a gap analysis, one must have an understanding of the desired future or "to be" state. For cybersecurity focused gap analyses, we frequently use IT security controls as the means by which we describe the "to be" (or "should be") state of IT systems and Information Security Management Programs. There are a variety of guidance documents which list and define sets of security controls. Each of these documents or sets of controls has an underlying framework. One of...

  • Management Information System

    through studying the IT infrastructure of a relevant information system (IS)/ information technology (IT) used by selecting any organization of your choice locally or internationally The idea is to investigate the selected organization using the main components of IT (Hardware, software, services, data management and networking). Infrastructure Investigation, which is in a selected industry, should be carried out by using articles, websites, books and journal papers and /or interviews. In the report, you are expected to discuss:Executive Summary .     ...

  • How many pi bonds are shown within the box? 320899 1 To receive credit, you must show your work. STAPLE all pages be...

    How many pi bonds are shown within the box? 320899 1 To receive credit, you must show your work. STAPLE all pages before submitting your hamework Problems will be selected at random for grading, but a full answer key will be posted to Blackboard. 1. Below is a nanodragster. YES, we can make machines-cars, even-at the nano- scale, the sizes of molecules. This little nanodragster has some nifty features. Its chassis is rigid like the chassis of a real car....

  • 1. An entity invests in a security that is not, in form, common stock. Identify a...

    1. An entity invests in a security that is not, in form, common stock. Identify a characteristic of that security that would support a determination (even if not conclusively) that the security is in-substance common stock 2. Identify one condition that must be met for an asset group to be classified as held for sale. 3. What is the main condition for reporting a disposed component as a discontinued operation? 4. Company X leases property for 10 years under which...

  • Instructions: Quite often, I have heard many people say that "a managers job is simply to...

    Instructions: Quite often, I have heard many people say that "a managers job is simply to tell people what to do." I sometimes wonder if that is true! Hey, I just thought of a great idea. Instead of just wondering if that statement has any validity to it, let's just ask a manager. Your task for this week is to interview a manager.  It can be a present or past manager or someone whom you have never worked with. You may...

ADVERTISEMENT
Free Homework Help App
Download From Google Play
Scan Your Homework
to Get Instant Free Answers
Need Online Homework Help?
Ask a Question
Get Answers For Free
Most questions answered within 3 hours.
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT