Wednesday, February 11, 2009

What are the critical success factors?

Experience has shown that the following factors are often critical to the successful implementation of information security within an organization:
  • security policy, objectives and activities that reflect business objectives;
  • an approach to implementing security that is consistent with the organizational culture;
  • visible support and commitment from management
  • a good understanding of the security requirements, risk assessment and risk management
  • effective marketing of security to all managers and employees;
  • distribution of guidance on information security policy and standards to all employees and contractors;
  • provide appropriate training and education;

No comments:

Post a Comment