Top IT Security Bloggers

Who Should the CISO Report To? It Depends

  • Isaca
  • — 25 Sep 2019, 4:19 p.m.

The information security challenges faced by enterprises are dependent on the unique characteristics of the business. This means there is no one “right” answer for where the CISO sits on the org chart. The strategic goals, risk management strategy, and maturity of your organization are all key factors in determining the most effective reporting structure. So, without a defined best practice, how do you evaluate who your CISO reports to?Know where you’re starting: Understanding your organizati...

Read the full article