Ten Essential Components for a Successful Information Security Program

This section provides a quick overview of key information security concepts and suggestions on how to implement them at your company. These suggestions follow the consistent themes of people, process, and technology used throughout this book.

1—CEO “Owns” Information Security Program

The CEO needs to assume overall ownership of the information security program and set the tone for the rest of the organization. The CEO's staff should be involved in developing broad objectives for the program, and the CEO should conduct regular reviews to ensure that his staff is meeting the program goals. The CEO must consider information security an essential component of the company's business ...

Get Executive Guide to Information Security, The: Threats, Challenges, and Solutions now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.