
Information Security Governance
Framework and Toolset for CISOs and Decision Makers
Andrej Volchkov(Author)
CRC Press
1st Edition
Published on 25. October 2018
Book
Paperback/Softback
256 pages
978-0-8153-5644-8 (ISBN)
Description
This book presents a framework to model the main activities of information security management and governance. The same model can be used for any security sub-domain such as cybersecurity, data protection, access rights management, business continuity, etc.
More details
Language
English
Place of publication
Bosa Roca
United States
Publishing group
Taylor & Francis Inc
Target group
Professional and scholarly
Academic and Professional Practice & Development
Dimensions
Height: 234 mm
Width: 156 mm
Thickness: 15 mm
Weight
424 gr
ISBN-13
978-0-8153-5644-8 (9780815356448)
Copyright in bibliographic data and cover images is held by Nielsen Book Services Limited or by the publishers or by their respective licensors: all rights reserved.
Schweitzer Classification
Other editions
Additional editions

E-Book
10/2018
1st Edition
Auerbach
€81.99
Available for download

E-Book
10/2018
1st Edition
Auerbach
€81.99
Available for download
Person
Andrej Volchkov is an independent consultant in the field of information security governance and program management. He has more than 30 years of experience as a security program manager and responsible for new technologies and IT change management at Pictet Group, a major financial institution based in Geneva, Switzerland. Within Pictet he was also in charge of compliance projects in the field of data privacy and data protection. Previously, he served as head of information security, compliance, and internal solutions in IT. He was also a project leader likewise responsible for IT architecture and new technologies at Pictet.Andrej is a lecturer at Geneva University in the domain of security governance and management, and invited speaker at some major international conferences. He graduated in Mathematics and IT Technology, holds an MBA from the Geneva School of Economics and Management, and is member of major international IT and security associations.
Content
Introduction. 1. Governance and Management. 2. Control Framework. 3. Using the Control Framework. 4. Strategy. 5. Policy and Guidelines. 6. Organization. 7. Risk Management. 8. Security Program Management. 9. Reporting. 10. Asset Inventory. 11. Compliance. 12. Metrics and KPI.