Information technology. Security techniques. Governance of information security

Information technology. Security techniques. Governance of information security

Regular price
£166.00
Sale price
£166.00
Regular price
£83.00
Sold out
Unit price
per 

What is ISO/IEC 27014 about?  

ISO/IEC 27014 provides guidance on concepts and principles for the governance of information security, by which organizations can evaluate, direct, monitor, and communicate the information security-related activities within the organization. 

ISO/IEC 27014 allows you to: 

  • Align information security objectives with business strategy 
  • Deliver value to stakeholders and governing bodies 
  • Ensure information risk is being adequately addressed 
  • Provide visibility on the information security status 
  • Make efficient and effective investments on information security 
  • Achieve compliance with external requirements (legal, regulatory,\ or contractual) 

Who is ISO/IEC 27014 for? 

ISO/IEC 27014 on governance of information security is useful for the organization: 

  • All governing bodies 
  • All organizations 

Why should you use ISO/IEC 27014 

Information security has become a key issue for organizations. Not only are there increasing regulatory requirements but the failure of an organization’s information security measures can have a direct impact on an organization’s reputation. Therefore, the governing body, as part of its governance responsibilities, is increasingly required to oversee information security to ensure the objectives of the organization are achieved. 

ISO/IEC 27014 provides guidance on concepts and principles for the governance of information security, helping organizations evaluate, direct, monitor, and communicate information security-related activities within the organization. ISO/IEC 27014 provides the mandate essential for driving information security initiatives through the organization.  

Furthermore, effective governance of information security ensures that the governing body receives relevant reporting framed in a business context about information security-related activities. 

ISO/IEC 27014 will help organizations achieve an agile approach to decision-making about information risks and allow organizations to make pertinent and timely decisions about information security issues in support of the strategic objectives of the organization.