Expert Advice Community

Guest

Information security strategy

  Quote
Guest
Guest user Created:   Oct 27, 2018 Last commented:   Oct 27, 2018

Information security strategy

I have been asked by the management to develop an information security strategy, and this is completely new to me. It should reflects the company's security vision for the future. Do you have any helpful articles or resources for that?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Oct 27, 2018

Answer:

In fact, the information security strategy must be a part of the efforts to achieve business objectives and organizational strategies. For example, for the business objective of increase revenues, a business strategy may be to increase revenues through e-commerce, and an information security strategy may be to adopt a more robust platform to support the increase in the access and transactions and reduce unplanned downtime, or to decrease the number of data leakages, which directly supports an increase in trust in the organization. By implementing these information security strategies probably the strategic business objective may also be achieved.

This article will provide you further explanation about strategic alignment:
- Aligning information security with the strategic direction of a company according to ISO 27001 https://advisera.com/27001academy/blog/2017/02/20/strategic-direction-of-a-company-according-to-iso-27001/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Oct 27, 2018

Oct 27, 2018