Information Security Roadmap Example

ComponentStrategic InitiativesTime FrameTactical PlansTime Frame
People
  • Develop information security strategy

6 months
  • Assign acting manager for department

30 days
 
  • Create and staff separate information security organization

12 months
  • Clarify roles and responsibilities for information security

60 days
 
  • Establish formal training program to receive industry-recognized credentials

24 months
  • Schedule firewall training for all staff

90 days
Processes
  • Establish corporate governance board with key members of management team

9 months
  • Collect existing security policies

30 days
 
  • Publish security policies on company intranet

9 months
  • Develop consistent format fo policies

90 days
 
  • Establish company-wide security awareness program

18 months

Get Executive Guide to Information Security, The: Threats, Challenges, and Solutions now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.