From the course: CISA Cert Prep: 5 Information Asset Protection for IS Auditors

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Information security domains

Information security domains

From the course: CISA Cert Prep: 5 Information Asset Protection for IS Auditors

Start my 1-month free trial

Information security domains

- [Instructor] Hi, let's talk about information Security domains. Well, there's several different domains or elements for a typical security program. So we're gonna talk about each of those elements here. So first, let's talk about security program planning. This is where you define all the rules and responsibilities, who's gonna do what. You define what streams of work or what the domains you're gonna have within this security program. And remember, a security program, like any other program, is just a project that has no defined beginning or end, it's just something you erect and then you keep maturing and maturing over time. So these streams of work are those activities that we're going to do within the security program. Well we're gonna define what those are. Like, we're gonna have a disaster recovery stream. We're gonna have an incident handling stream, a physical security stream, et cetera. What are the security targets or the areas within the organization that we're going to…

Contents