ABSTRACT

IT governance seems to be one of the best strategies to optimize IT assets in an economic context dominated by information, innovation, and the race for performance. The multiplication of internal and external data and increased digital management, collaboration, and sharing platforms exposes organizations to ever-growing risks. Understanding the threats, assessing the risks, adapting the organization, selecting and implementing the appropriate controls, and implementing a management system are the activities required to establish proactive security governance that will provide management and customers the assurance of an effective mechanism to manage risks.

IT Governance and Information Security: Guides, Standards, and Frameworks is a fundamental resource to discover IT governance and information security. This book focuses on the guides, standards, and maturity frameworks for adopting an efficient IT governance and information security strategy in the organization. It describes numerous case studies from an international perspective and brings together industry standards and research from scientific databases. In this way, this book clearly illustrates the issues, problems, and trends related to the topic while promoting the international perspectives of readers.

This book offers comprehensive coverage of the essential topics, including:

    • IT governance guides and practices;
    • IT service management as a key pillar for IT governance;
    • Cloud computing as a key pillar for Agile IT governance;
    • Information security governance and maturity frameworks.

In this new book, the authors share their experience to help you navigate today’s dangerous information security terrain and take proactive steps to measure your company’s IT governance and information security maturity and prepare your organization to survive, thrive, and keep your data safe. It aspires to provide a relevant reference for executive managers, CISOs, cybersecurity professionals, engineers, and researchers interested in exploring and implementing efficient IT governance and information security strategies.

chapter |6 pages

Introduction

part Section 1|78 pages

IT Governance

chapter 2|40 pages

IT Governance and Information Security

Guides and Standards

part Section 2|101 pages

Maturity Frameworks for Information Technology Governance

chapter 3|41 pages

IT Governance in Organizations

A Maturity Framework Based on COBIT 5

chapter 4|28 pages

IT Service Management as a Key Pillar for IT Governance

A Maturity Framework Based on ITILv4

part Section 3|107 pages

Maturity Frameworks for Information Security Governance

chapter 6|25 pages

Information Security Governance

Best Practices in Organizations

chapter 7|31 pages

Information Security Governance

A Maturity Framework Based on ISO/IEC 27001

chapter 8|45 pages

Information Security Policy

A Maturity Framework Based on ISO/IEC 27002

chapter |1 pages

Conclusion