People—Administration

Well-defined roles and responsibilities are important for any organization to be successful within a corporation, and information security is no different. Does the leader of your information security program have sufficient authority to put security policies in place and enforce them throughout your company? If your staff has responsibility for information security but little or no authority to enforce the program, it is unlikely to succeed.

The support of the executive staff is critical to gain the necessary commitment of all organizations to the information security program. Management must be aware of the challenges of the information security program and the progress that is being made. Regular reporting to the executive ...

Get Executive Guide to Information Security, The: Threats, Challenges, and Solutions now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.