Essential Components for a Successful Information Security Program

The following 10 areas are essential for your information security program to be effective:

  1. Make sure the CEO “owns” the information security program.

  2. Assign senior-level staff with responsibility for information security.

  3. Establish a cross-functional information security governance board.

  4. Establish metrics to manage the program.

  5. Implement an ongoing security improvement plan.

  6. Conduct an independent review of the information security program.

  7. Layer security at gateway, server, and client.

  8. Separate your computing environment into “zones.”

  9. Start with basics and then improve the program.

  10. Consider information security an essential investment for your business.

We will describe these components ...

Get Executive Guide to Information Security, The: Threats, Challenges, and Solutions now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.