
Useful overview of ways to control information security risks

Faced with the emergence and speed of growth in the information economy, organizations have an urgent need to adopt IT governance best practice, according to Alan Calder and Steve Watkins in their book IT Governance: An International Guide to Data Security and ISO27001/ISO27002. The authors define IT governance as ‘the framework for the leadership, organizational structures and business processes, standards and compliance to these standards, which ensures that the organization’s information systems support and enable the achievement of its strategies and objectives’.

My full review of the book is available at my business book reviews website.