- The organization parses out responsibility for security management and oversight to staff members with other, higher priority responsibilities.
- Operating organizational security in this way can hamstring its effectiveness by relegating it to a secondary role assigned to non-experts.
- This solution set will guide the enterprise through the process of developing a formal IT security team focused on skills, responsibilities, reporting, and structure.
Our Advice
Hypothesis
- As IT security concerns become more complex within organizations, enterprise response to those concerns needs to become more formalized.
- The use of employees dedicated to IT security allows the enterprise to improve its security capabilities by allowing focused work efforts by individuals with specialized skills.
- Because budgets are not unlimited, IT security teams must be built leanly with the right employees who have the right blend of skills.