In Depth
Security Accountability: The Fault Line
Welcome to a world where projects fail, computers crash and secrets escape...and you don't have to be the fall guy.
By Tom Wailgum
Process management, with a clearly defined, easy-to-follow set of guidelines for handling security matters, is another way CSOs can manage accountability. Along with raising awareness, process management can reinforce the expectations that the security department has for everyone. "Fundamentally, security is a process. That means that it is not a tool; it's not a piece of hardware or software," says SunGard's Herberger. "It is about your risk tolerance. About your company's culture. And there's no way that it can be solely with one staff function."
At Nortel, Williams tries to involve as many different functions in his security process as possible. He works with members from various cross-functional groups
If and when it's needed, Williams also has a process that takes care of follow-up and investigation
$firstKeyword
Security Directions: A Virtual Conference
Available On Demand Sept. 30 - Dec. 30
Join us for a virtual event with candid, expert information on top security challenges and issues - all from the comfort of your desktop.
Protecting PII: How to Work with IT to Manage Risk
Understand the critical nature of the test data privacy problem and get tips on how to work with IT to implement a test data privacy program.



