ABSTRACT

An interdepartmental information security Committee would not be just an advisory committee, but would also be a vehicle for promoting security awareness throughout the different departments. Every department within an organization has a role to play in creating a security-aware environment. This chapter illustrates these roles using a manufacturing company model. Collectively, the departments within an organization work to provide greater contributions to an organization’s security than they do alone. The chapter aims to give a brief overview of each department, and how each depends on another to achieve security. It is the Human Resources Department’s job to make sure the organization is following proper legal methods for the hiring, firing, and managing of personnel. Although many smaller organizations have the Administrative and HR Departments split much of the responsibility of handling legal affairs, some organizations have entire departments dedicated to providing legal counsel and research.