ABSTRACT

The “Communications and Operations Management” security clause is the largest clause in the code of practice. This clause contains 32 controls in 10 different objectives. After little consideration, it is easy to understand why this area has the most controls. Information security is highly operational and involves communications on a frequent basis. The controls within this clause are very important, and nine of the 35 key risk indicator controls are contained in this clause, making up a little over 25 percent of the total KRI controls.