Successful Security Budgeting and Value Justification
ADD
Sunday, 04 November 2007
14:45-15:45
esc19_2d.pdfesc19_2d.ppt
Speaker: Tom Scholtz
Location: Palais des Festivals - Ambassadeurs 2
Marketplace: SEC
Session Type: Kick-Off Session
Track: SRC
Job Role: Security & Risk Management
Business Imperative: Manage Risk, Compliance & Enterprise Governance

Tom ScholtzHow do you insure your organization is spending enough on information security? As the perception grows that the security problem is solved, the topic has slide down the list of executive priorities. This may make it difficult to justify strategic and project-specific security investments.
Key Issues:
  • How much should enterprises spend on information security?
  • What are practical models for communicating the value of an information security program?
  • What are some techniques for effective cost/benefit analyses for security project investments? What are effective strategies for obtaining and maintaining support for information security investments?