To complement our last post on security indicators worth tracking, here’s another piece of a cohesive approach to security management: Ray Bernard in Security Technology Executive describes how to establish a security management process.
Don’t chill out. A well-conceived process – not a controlling manager’s excuse for what he or she calls a process – can save you time and produce reliable, valuable results. If a process is part of a repeatable management system and subject to ready verification – Plan, Do, Check, Act – it can bring time-and-money-saving results. The very definition of “worthwhile”.
Ray Bernard describes that sort of process in his Security Technology Executive article. It’s a great service.