Question 8 of 10Pro Only
You have been asked to establish a security governance program for an organization that currently lacks formal security oversight. How would you structure this program, what key components would you include, and how would you gain organizational buy-in?
Sample answer preview
Establishing a security governance program requires building structures that provide oversight, accountability, and direction for information security across the organization.
security governancesteering committeepolicy frameworkrisk managementperformance measurementexecutive sponsorship