September 14, 2009 6:19 PM
Posted by: Robert Davis
Benchmarking,
Budgeting,
Framework,
Gap Analysis,
Governance Tree,
Information Security Governance,
Information Security Management,
Information Security Processes,
Internal Control System,
ISG,
ISM,
ITG,
Maturity Modeling,
Methodology,
ObjectivesIf, however, you assume ISG provides financial and/or reputational benefits, potential stakeholders are presumed to rely upon governance elements prior to investing their time, talent, and/or money. Therefore, ascertaining the effectiveness and efficiency of entity-centric information security...
September 10, 2009 9:01 PM
Posted by: Robert Davis
Framework,
Governance Tree,
Information Security Governance,
Information Security Management,
Information Security Processes,
Internal Control System,
ISG,
ISM,
ITG,
MethodologyAlternatively, if you perceive ISG as a descriptive prescription for achieving managerial objectives, the adopted ISG methodology should provide security assessments defining strategic, tactical, and operational risks. Management usually is...
September 8, 2009 6:56 PM
Posted by: Robert Davis
Framework,
Governance Tree,
Information Security Governance,
Information Security Management,
Information Security Processes,
ISG,
ISM,
ITG,
MethodologyIf you envision ISG as a framework servicing entity and 'IT governance', then structurally, ISG should be implemented as an organizational program with objectives,...
September 3, 2009 8:04 PM
Posted by: Robert Davis
Framework,
Governance Tree,
Information Security Governance,
Information Security Management,
Information Security Processes,
ISG,
ISM,
ITG,
MethodologyTraversing to and aligning with potential 'Governance Tree' third-tier abstraction levels; information security governance (ISG) can be viewed as a framework, methodology, or technique. Framing ISG enables a...
February 9, 2009 8:02 PM
Posted by: Robert Davis
COBIT,
Control Self-assessment,
Framework,
ISACA,
ITGI,
Management Information Systems,
Methodology,
Quality Assurance Program,
TechniqueDepending on your abstraction level, IT governance can be viewed as a framework, methodology, or technique. As a framework, IT governance enables a “system of controls” assisting in assuring organizational goals and objectives are achieved effectively and efficiently. As a methodology, IT...