UC Home Maps A-Z Index Web Search People Search UC Tools  
University of Cincinnati - UCit   University of Cincinnati - Home
 
 

From the Director - Most Critical Elements for InfoSec Program Success


  1. Senior management commitment to InfoSec initiatives
  2. Management understanding of InfoSec issues
  3. Infosec planning prior to implementation of new technologies
  4. Integration between business and InfoSec
  5. Alignment of InfoSec with the organization’s objectives
  6. Executive and line mgt ownership and accountability for implementing, monitoring and reporting on information security

Some additional elements for InfoSec Program Success are:

  1. Appropriate employee education and awareness on information asset protection
  2. Consistent enforcement of InfoSec policies and standards
  3. Placement of InfoSec within the organization hierarchy
  4. Budget for InfoSec strategy and tactical plan
  5. Consistent board/executive management message with regards to InfoSec priorities
  6. Focus on short-term goals resulting in long-term control weaknesses
    One big issue with applying the above elements is that day-to-day priority conflicts continue to put InfoSec on the back burner
 
InfoSec Home
Free Anti-Virus
PSS Help
Report an Incident
Security Update
 
 

Featured Article

 
 

It's all UC Footer rule line