security policy

The failure of security awareness programs

Published on 1 September, 2010 - 11:16 by Terranova security awareness training, security policy, News, Planning
In many cases, security awareness programs fail because they are not tied to the overall company-wide security policies. In some cases, security policies and therefore security awareness training is not given the proper attention and buy-in required by key stakeholders within the company. According to www.windowssecurity.com, “The Security Awareness Program can be defined as one of THE key factors for the successful implementation of a company-wide security policy.”  Clearly, the goals for any...

Why you need a project manager and a communication champion

Published on 2 August, 2010 - 21:46 by Terranova business case, communication champion, Planning, project manager, project plan, regulatory constraints, security policy, Planning
Before diving into the planning process for a security awareness training project, it’s important to assign a project manager and appoint a communications champion as part of the project.  Creating a project includes defining business objectives and scope (what’s included and what’s not) in a project plan document. Ideally, the project objectives will closely mirror those described in the business case that was either verbally provided or put into an actual written document to obtain the...