Print
Infosec - what are we trying to protect?
October 24, 2008 – 7:10 am by Lance MichalsonBy securing an organisation’s information systems and networks, we are trying to protect the same assets organisations have traditionally attempted to protect (or protect against): competitive advantage, business uptime (availability), cash flow, financial loss, preservation of business relations, unforeseen legal and business resumption costs, intellectual property, commercial or public image, integrity of business records to conduct business in the future, protect its legal interests and prevent theft.
However, in an electronic environment, one does not have the comfort which case law provides and one is unsure of how to calculate damage to data itself. Possibly, the biggest challenge is how to integrate technical controls and legal safeguards or insure against ill-defined losses, such that we achieve a collaborative and collective risk management strategy developed by technology and legal professionals working co-operatively to address information security.

You must be logged in to post a comment.