First-Tier Governance Development - Part IV - IT Governance, Risk, and Compliance

IT Governance, Risk, and Compliance

Nov 2 2009   5:34PM GMT

First-Tier Governance Development - Part IV



Posted by: Robert E. Davis
Framework, Node, Stakeholder, Decision Theory, Fiduciary Responsibility, Governance Tree, Information Theory, Information Security Governance, Information Security Management, ISG, ISM, CISM

Organizational units exist for various reasons. Threading from the first-tier Governance Tree level, linked leaves are inextricably affected by external forces. An organizational formation’s continuity depends on relevant, accurate and timely external environment information assessments to drive appropriate governance. Management, especially information security management, can not establish an adequate safeguarding posture unless root expectations are understood and potential threats, weaknesses as well as opportunities are appropriately redressed. Applying the described Governance Tree framework allows methodological, value driven consideration, development and deployment of aligned programs that positively impact control environment awareness and subsequent resource allocation decisions.

View Part I of the First-Tier Governance Development series here

Comment on this Post


You must be logged-in to post a comment. Log-in/Register