ABSTRACT

Projects are constantly developed and initiated to improve or implement new business functions. A majority of these initiatives probably have an IT component and process confidential or business-critical information. While you are mitigating risks in various areas, these projects are opening new avenues for vulnerabilities. To maintain a sustainable security posture throughout your enterprise, you need to review the security component of these projects prior to their deployment. Projects that do not go through security reviews may have the following implications:

A higher risk of exposure of information assets due to weak security can result in regulatory penalties, legal liabilities, and loss of reputation.