As someone trying to initiate Information Security departmental structure,
seek old pros advise on the correct ways to go about it.
I have been considering something on these lines: (Consider this to be an
Enterprise class organisation with IT Support Managers and CIO already in
place)
Top to bottom:
1. Chief Information Security Oficer- CISO - Reports to whom generally?
2. Information Security Office - ISO or Manager - Information Security. At
peer levels to IT support manager
3. Information Security Analyst (s) - (Growth Path designation -
Information Security Architect(s) )
4. Infrastructure Security Engineer(s) - (Growth Path - Systems Security
Engineer)
5. Software Security Engineer (s) - (Growth Path - Systems Security
Engineer )
Your inputs pls??
Received on May 06 2008