Chapter e27

Information Technology Security Management

Rahul Bhaskar, and Bhushan Kapoor     California State University, Fullerton, CA, United States

Abstract

Information technology (IT) security management can be defined as a process that enables organizational structure and technology to protect an organization's IT operations and assets against internal and external threats, intentional or otherwise. The principal purpose of IT security management is to ensure confidentiality, integrity, and availability of IT systems. Fundamentally, security management is a part of the risk management process and business continuity strategy in an organization.

Keywords

Access control standards and accountability; Business continuity strategy; Information security ...

Get Computer and Information Security Handbook, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.