In this chapter, we define and explain the concept of Cybersecurity Technology Management (CTM) and how it applies to cybersecurity governance. CTM is a multidisciplinary area of study that embraces engineering, science, and management disciplines to design a set of rules and procedures for technology utilization to develop, maintain, and improve a company’s cybersecurity and competitive advantage. Because IT is such a powerful force, CTM emphasizes the governance policies and procedures for efficiently applying risk control processes and technologies to meet organizational objectives, boost revenue, and gain an edge over competitors. The CTM process provides a comprehensive approach and guidelines to connect strategic governance and technical components with the organization's overarching business objectives. It entails various activities, including planning, organizing, and controlling the multiple parts of the CTM governance. It covers the entire value chain of cyber risk control activities under an overarching ERM umbrella.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Cybersecurity Technology Management

  • Kok Boon Oh,
  • Giang Hoang,
  • John Sturdy,
  • Sarah Shuaiqi Guo

摘要

In this chapter, we define and explain the concept of Cybersecurity Technology Management (CTM) and how it applies to cybersecurity governance. CTM is a multidisciplinary area of study that embraces engineering, science, and management disciplines to design a set of rules and procedures for technology utilization to develop, maintain, and improve a company’s cybersecurity and competitive advantage. Because IT is such a powerful force, CTM emphasizes the governance policies and procedures for efficiently applying risk control processes and technologies to meet organizational objectives, boost revenue, and gain an edge over competitors. The CTM process provides a comprehensive approach and guidelines to connect strategic governance and technical components with the organization's overarching business objectives. It entails various activities, including planning, organizing, and controlling the multiple parts of the CTM governance. It covers the entire value chain of cyber risk control activities under an overarching ERM umbrella.