PART II: PRINCIPLES
I often get asked the question – How can we become compliant? – only to give the ubiquitous answer: it depends. Have you wondered why the same techniques can work wonders for one organization, yet flounder in another? There is yet an interim step between seeing a gap and taking action.
In Part I: Elements, we explored the “what” of an IT control, slicing it from six perspectives. Before we get to the “how” in Part III: Strategies – techniques that can be employed to attain or sustain IT compliance through effective control design – we need to take an interim step: recognize the ways and means that elements can be structured to lead to a desirable outcome.
Seen in this light, the section on Principles is a bridge that gets ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access