Mushrooming industry and government mandates that govern IT security have led to a highly regulated environment and annual compliance fire drills. Compliance, however, does not necessarily equal better security. We are reminded of this fact nearly every day when breaches make headlines. So what role should compliance and risk management play within an enterprise’s overall security equation? Organizations that pursue a check-box mentality only achieve point-in-time compliance.
Risk and Compliance: The Yin and Yang of Security
Posted by: Joe Fantuzzi & Torsten George May 4, 2013 05:00 AMMushrooming industry and government mandates that govern IT security have led to a highly regulated environment and annual compliance fire drills. Compliance, however, does not necessarily equal better security. We are reminded of this fact nearly every day when breaches make headlines. So what role should compliance and risk management play within an enterprise’s overall security equation? Organizations that pursue a check-box mentality only achieve point-in-time compliance.