CHAPTER 3: OCTOBER - COMPLIANCE MAY BE ONLY SKIN DEEP

Introduction

The experience that is behind the writing of this book is that of usually swooping in at the last minute, with about six weeks to deliver a compliance state for an organisation. However, most organisations tend to realise very quickly that saying you’ve done it (security) doesn’t necessarily mean that you are it (secure). The capacity to successfully fill in forms and ‘get through’ audits is staggering, when you consider the gap between the contents of the verbiage and the reality of the infrastructure and operation across many organisations. It may be that ‘compliance is only skin deep’ and you have to actually dig below the rhetoric, then formulate a plan to achieve the ...

Get Once More Unto the Breach: Managing information security in an uncertain world now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.