By understanding the real threats to your business information and systems, you can identify the right mix of technical, procedural and organisational controls needed to meet your security requirements.
Remember, security is as much about people as technology, so staff training is vital to the effective implementation of any security program.
Ask the question:
Does my security program address:
- confidentiality
- integrity
- availability
of my business information and IT systems?
Next topic in this section >