Management Controls: The security controls, procedures, and practices that focus on the management of risk and the management of information system security. They involve risk assessment, security planning, system and services acquisition, and security program management. Management controls are designed to ensure that information systems are adequately protected and that risk management strategies are in place and functioning properly.
Categories: CC D1: Security Principles | CCSP D6: Legal - Risk and Compliance | CISM D1: Information Security governance | CISSP D1: Security and Risk Management | Security+ D5: Security Program Management and Oversight | SSCP D1: Security Concepts and Practices
« Back to Glossary Index