The objective of this article, is to describe and discuss the identification, development and use of metrics charts to assist in managing an InfoSec programme.
Information Security management: A human challenge?
โ Scribed by Debi Ashenden
- Publisher
- Elsevier Science
- Year
- 2008
- Tongue
- English
- Weight
- 145 KB
- Volume
- 13
- Category
- Article
- ISSN
- 1363-4127
No coin nor oath required. For personal study only.
โฆ Synopsis
This paper considers to what extent the management of Information Security is a human challenge. It suggests that the human challenge lies in accepting that individuals in the organisation have not only an identity conferred by their role but also a personal and social identity that they bring with them to work. The challenge that faces organisations is to manage this while trying to achieve the optimum configuration of resources in order to meet business objectives. The paper considers the challenges for Information Security from an organisational perspective and develops an argument that builds on research from the fields of management and organisational behaviour. It concludes that the human challenge of Information Security management has largely been neglected and suggests that to address the issue we need to look at the skills needed to change organisational culture, the identity of the Information Security Manager and effective communication between Information Security Managers, end users and Senior Managers.
๐ SIMILAR VOLUMES
Information security has moved a long way from the early days when physical security, together with a set of backups, formed the backbone of a company's security controls. Today,information security is all about policies, standards, awareness programs, security strategies, etc. The aim of informatio