If enterprise security continues to mature as a business function, in most enterprises, senior management will ask for a set of metrics to measure performance.
January 1, 2020
What is the point of spending time, resources and money on your security program if you can't tell whether it's working or not? It's just as important to establish the right metrics for a security program as it is to have such a program in the first place.
The Information Security Forum (ISF) released its Using Cloud Services Securely: Harnessing Core Controls, which provides a comprehensive approach to securing cloud services for organizations that are considering using, or already actively use, one or multiple cloud service providers (CSPs).
Donna Roy, Executive Director of the Information Sharing and Services Office at the Department of Homeland Security in the Office of the CIO, will be joining the Consumer Financial Protection Bureau as CIO.
The Veterans Affairs (VA) Office of Inspector General (OIG) has found that the VA's Office of Information Technology (OIT) management of mobile devices generally met information security standards.
The Information Security Forum (ISF), a resource for executives and board members on cybersecurity and risk management, and National Institute of Standards and Technology (NIST) are partnering to create Online Informative References (OLIRs) between information security standards and the NIST Cybersecurity Framework (CSF).