A neat presentation and webcast by George Spafford brought out the value of integrating IT security processes with general IT operations, risk, change and configuration management and linking to business strategy, through ITIL IT service management and COBIT. It's good to see such a broad perspective on IT security, especially one that puts the business rather than security objectives at centre stage.
More information security management resources
The link to the preso is broken fyi
ReplyDeleteSorry DM, my fault - missed the http:// from the URL. Too much Christmas spirit.
ReplyDeleteG