“Auditing Information and Cyber Security Governance: A Controls-Based Approach” intent is to create quality reference material for assurance service practitioners to enable addressing protection mandates.
A comprehensive entity security program deploys information asset protection through stratified technological and non-technological controls. Controls are necessary for counteracting threats, opportunities, and vulnerabilities risks in a manner that reduces potential adverse effects to defined, acceptable levels. This book presents a methodological approach in the context of normative decision theory constructs and concepts with appropriate reference to standards and the respective guidelines. Normative decision theory attempts to establish a rational framework for choosing between alternative courses of action when the outcomes resulting from the selection are uncertain. Through the methodological application, decision theory techniques can provide objectives determination, interaction assessments, performance estimates, and organizational analysis. A normative model prescribes what should exist according to an assumption or rule.
Want to review or comment on this book?
Need a FREE Reader Membership?
Reviews for "Auditing Information and Cyber Security Governance"
A much-needed service for society today. I hope your book reaches information managers in the organization now vulnerable to hacks that are stealing corporate information and even holding it hostage for ransom.
In his many novels, poetry, histories, editorials, plays, and letters, W. E. B. Du Bois poured so much of his blindingly incandescent soul into his writings that no single volume could ever contain all of his words or works. In fact, had not the his
This secondary physical education curriculum for Middle School and High School students is specifically designed for teenagers 14-18 years old concerning situations faced by this age group in today's society.