The governing principle behind an ISMS is that an organization should
design, implement and maintain a coherent set of policies, processes and
systems to manage risks to its information assetts thus ensuring acceptable levels of information security risk.
The degree of security depends on three factors: the risk you are
willing to take, the functionality of the system and the costs you are
prepared to pay

No comments:
Post a Comment