Mirrors should reflect a little before throwing back images.

Jean Cocteau, 1889–1963

Most organizations today have a vision statement to direct the company employees to conduct business in a way that meets the overall goals of the organization. Vision statements are generally very short so that employees can easily grasp the essence of the strategy and behave in a manner that is consistent with the strategy. This is helpful to determine the right course of action in absence of a documented policy. Just as the overall business needs to have a vision, mission statement, goals, and action plans, so does the information security program if it is to sustain long-term viability and be effective in ...

Get Information Security Governance Simplified now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.