It is tempting, if the only tool you have is a hammer, to treat everything as if it were a nail.

Abraham Harold Maslow, 1908–1970

The previous chapter provided an overview of the security standards and framework landscape, and illustrated the importance of adhering to a set of security controls to enhance security and demonstrating compliance to the organization and to the auditors. Each of the different standards has controls at different levels of detail. The standards chosen by an organization may be aligned to a particular vertical industry or generally applicable across industries as shown in Table 8.1.

Security Control Convergence

The next three chapters cover the minimum ...

Get Information Security Governance Simplified now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.