Security Governance Principles Flashcards
At what level does Cybersecurity fall within an organization?
Enterprise Risk Management Decision making is done at the risk management side.
Business metrics to measure performance in relation to strategic goals and objectives. Management metrics used to inform decision making.
KPIs
Approach take to achieve a goal
A strategy
Mitigate risk to an acceptable level
Risk Management
Achieve operational synergies and efficiencies
Process Integration
Approach taken to achieve a goal
Strategy
A broad primary outcome
Goal
Measurable steps taken to achieve a strategy
Objective
A tool used in support of an objective
Tactic
Align departmental strategies with business strategies to support organizational goals
Departmental Alignment
Optimize investments in support of business objectives.
Value Delivery
Efficient and effective use of resources
Resource Managment
Ensure customer and stakeholder satisfaction
Satisfaction
Enhance organizational reputation with stakeholders and the broader community
Reputation Enhancement
Reduce the likelihood of successful litigation by adhering to the principle of due care.
Reduced Liability