The Wayback Machine - https://web.archive.org/all/20050309091904/http://www.computerworld.com:80/securitytopics/security/story/0,10801,92915,00.html

IDG Network:   
   








Go to Advanced Search


Computerworld Home



XML Feeds





Premier 100 Now!

Premier 100 News

Live Blogging

Executive Briefing:
IT Mgmt. Best Practices


Premier 100 Data Points

Special Report:
The Future of IT


Knowledge Centers

Security
Storage
Mobile & Wireless
Hardware
Business Intelligence
Networking
Software
More Knowledge Centers:


Partner Zones

Blade-Ready Data Center
Government Mobility
IT Manager Zone
Service Level Mgmt.
SSL Services
Web Meeting Solutions
Features

Latest Headlines
This Week's Issue
Shark Tank
Research
Webcasts
White Papers
Buyer's Guides
E-mail Newsletters
News Feeds


Home > Browse Topics > Security


The Link Between Information Security and Corporate Governance




Related to this topic

Premier 100: Outsourcing security offers benefits, risks
New IM worms target MSN users
Harvard rejects business-school applicants who hacked site
Hungarian charged with hacking Sony Ericsson network
Antivirus companies report first mobile messaging worm



Other resources

Protecting Corporations from Internet Counter-Intelligence Threats - Free white paper available for download now
Free Verisign SSL Certificate - Don't miss the opportunity! Obtain a FREE SSL Trial ID today.
How to Entice More Visitors to Do Business on Your Web Site - Free Web Seminar


Opinion by Orson Swindle and Bill Conner

MAY 05, 2004 (COMPUTERWORLD) - The critical infrastructure that enables global commerce and our nation's physical security is only as strong as the information security that supports today's networked environment. While enormous strides have been made, there is no single technological bullet to solve the problems we face.

Information security, though often viewed as a set of technical issues, must be embraced as a corporate governance responsibility that involves risk management, reporting controls, testing and training, and executive accountability. As such, it requires the active engagement of all CEOs and boards of directors.

To this end, the Corporate Governance Task Force for the National Cyber Security Partnership was established last December to develop and promote a coherent management framework and to drive implementation of effective information security programs across all industries, organizations and educational institutions. Earlier this month, the task force unveiled its initial report, "Information Security Governance: A Call to Action," which was crafted through an unprecedented level of consensus and resource sharing among member experts from academia, government and industry.

Corporate governance consists of the set of policies and internal controls by which organizations, irrespective of size or form, are directed and managed. The task force report provides a subset of governance policies and controls that include identifying cybersecurity roles and responsibilities within executive management structures, establishing risk management and quality assurance benchmarks, creating institutionalized testing and training, and outlining best practices and industry metrics. In addition, flexible assessment tools were developed to bring accountability to three key elements of corporate governance: people, process and technology.

By using the information security governance framework, CEOs and boards of directors will create a safer business community internally and for their customers and others interconnected throughout the critical infrastructure. In aggregate, such measures serve as an executive call to action that will also help better protect our nation's security.   continued>>

1 2    next>>


Subscribe to our IT Management e-mail newsletter:
E-mail


Also in the Security Knowledge Center

News  |  Discussions  |  Buyers' Guides  |  Resource Links  |  White Papers  |  Mobile Channel  |  E-mail newsletters
  > Security XML Feed    > XML Feed FAQ






Additional Content
Security White Papers

Computerworld White Papers

Read up on the latest ideas and technologies from companies that sell hardware, software and services.

>Get the 3-in-1 SSL VPN Decision Toolkit
>Protecting Corporations from Internet Counter-Intelligence Threats
>Free CIO's Guide to Sarbanes Oxley by ReymannGroup
>Securing Your Website for Business
>Secure Site Seal Demo

>View Security whitepapers
IT Management: Featured White Paper

White Paper PDF Image Maintaining Compliance

Learn how companies use HP OpenView solutions support COBIT and COSO objectives, and ensure management software fits Sarbanes-Oxley requirements.

Download this free white paper now

E-Business: Featured Webcast

Webcast Image Managing the Geographically-dispersed E-Business

How are global corporations improving productivity across branch offices, partners, and high value institutional clients?

Learn what steps you can take to ensure important data is delivered quickly and critical transactions flow smoothly across the extended enterprise.

View this free e-business webcast now




Sponsored Links

The teleworker explosion is here.   Avaya has solutions.

Serving Your Customers An Outstanding Online Experience   Download this free white paper now!

Sprint - Connects the PGA to the World.   Learn More.

Free Verisign SSL Certificate   Don't miss the opportunity! Obtain a FREE SSL Trial ID today.

Free Email Compliance Reference Guide.   For help with Email Compliance this book rules!

Email   Security Services

MS IT Secrets   Watch a live webcast. Ask field experts questions. Sign up



   
   
 

Copyright © 2005 Computerworld Inc. All rights reserved. Reproduction in whole or in part in any form or medium without express written permission of Computerworld Inc. is prohibited. Computerworld and Computerworld.com and the respective logos are trademarks of International Data Group Inc.