CHAPTER

9

From Diagnosis to Transformation: Implementing People-Centric Security

The first two parts of this book have addressed culture generally, security culture in particular, and ways to articulate, diagnose, and analyze the security culture in your organization. Culture, however, remains a huge and inclusive phenomenon in any enterprise, the sum total of the assumptions, beliefs, and values mixing and interacting below the surface of easily observable behavior. Culture can be transformed, but transforming it is like changing the flow of a river. It isn’t easy when the river is constantly trying to revert back to its previous course. It is an exercise in organizational engineering. Your strategy has to be very specific and well understood ...

Get People-Centric Security: Transforming Your Enterprise Security Culture now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.