Information is vital for business to function, to face competition, and to update them, to customize their products and to survive in the market.
The importance of information security and its certification becomes even more important in the IT-enabled world, where one unit or department is connected via intranet and internet to a myriad of suppliers, partners and markets
The need for maintenance of high-quality, complete, accurate and up-to-date information calls for reduction of errors. This can be assured by
- Designing and building of information systems that are effective at gathering, analyzing and outputting the information
- Securing information systems against risks to their confidentiality, integrity and availability of information
- Protecting and enhancing the value of information and IT systems has become a central strategic objective in most businesses, second only to making profits It needs to be understood that, information security and its certification is not just having a set of
usernames and passwords.
- International security standards and regulations such as Health Insurance Portability and Accountability Act (HIPAA), Gramm-Leach -Bliley (GLB), Basel II, Sarbanes Oxley Act (SOX), Federal Information Security Management Act (FISMA), and various privacy/data protection laws also need to be adhered with, and upheld.
|