 




<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Are Security Leaders that Incompetent or is Security simply still not a Priority within Organizations?</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/security-hammer-time/are-security-leaders-that-incompetent-or-is-security-simply-still-not-a-priority-within-organizations/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/security-hammer-time/are-security-leaders-that-incompetent-or-is-security-simply-still-not-a-priority-within-organizations/</link>
	<description>Andrew Weidenhamer's opinion on security and regulatory compliance related topics.</description>
	<lastBuildDate>Sun, 30 Sep 2012 19:04:04 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
	<item>
		<title>By: ekardris</title>
		<link>http://itknowledgeexchange.techtarget.com/security-hammer-time/are-security-leaders-that-incompetent-or-is-security-simply-still-not-a-priority-within-organizations/#comment-20</link>
		<dc:creator>ekardris</dc:creator>
		<pubDate>Sun, 30 Sep 2012 19:04:04 +0000</pubDate>
		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-hammer-time/are-security-leaders-that-incompetent-or-is-security-simply-still-not-a-priority-within-organizations/#comment-20</guid>
		<description><![CDATA[What I&#039;m hearing you say is that, when it comes to security, the buck stops with the managment team.&#160; The management team sets the budget, scope and priorities for security, not the security expert.&#160; I do find though that most technical and security experts don&#039;t understand this.&#160; So take on the responsibility for the security on thier own shoulders.&#160; Almost enabling the CEO and managment teams not to be supportive.When I work with managment and technical teams, I try to identify this situation for the CEO.&#160; Then work with the managment team to quantify business measurements for security levels.&#160; Then hold the security team accountable for meeting those requirements.&#160; Most security teams can handle this and after they get it, are actually relieved when managment takes ownership of the security for the organization.Thanks for the article]]></description>
		<content:encoded><![CDATA[<p>What I&#8217;m hearing you say is that, when it comes to security, the buck stops with the managment team.&nbsp; The management team sets the budget, scope and priorities for security, not the security expert.&nbsp; I do find though that most technical and security experts don&#8217;t understand this.&nbsp; So take on the responsibility for the security on thier own shoulders.&nbsp; Almost enabling the CEO and managment teams not to be supportive.When I work with managment and technical teams, I try to identify this situation for the CEO.&nbsp; Then work with the managment team to quantify business measurements for security levels.&nbsp; Then hold the security team accountable for meeting those requirements.&nbsp; Most security teams can handle this and after they get it, are actually relieved when managment takes ownership of the security for the organization.Thanks for the article</p>
]]></content:encoded>
	</item>
</channel>
</rss>
