What is the top cybersecurity concern your business faces today?
206 views2 Comments
Sort by:
Director in Construction5 years ago
Lifecycle management
1
Content you might like
What are the toughest cultural or operational challenges that come with implementing a zero-trust policy, in your experience? How did you tackle those issues when they came up?
How does your organization handle security team involvement in change requests submitted to CAB/RAB — specifically in relation to formal security review and approval?
Always required – Security must formally review and approve every change request.
Required for security-impacting changes – Security reviews only changes flagged as having potential security implications. Please comment : Who decides which changes require security review and which do not ? Is this determination manual or automated? How do you avoid gaps or oversights in this process ?100%
Not required – Security does not review changes submitted CAB/RAB by other teams.
Risk-based or automated – Security involvement is determined by a tiered model or automated risk scoring within ITSM.
Lines of business other than IT should give input on how the security awareness & training program is designed.
Strongly agree11%
Agree69%
Neutral14%
Disagree3%
Strongly disagree

Absence of controls and monitoring