Cyber governance refers to the system using which an organization assesses and manages cyber threats, determines security strategies, and makes informed decisions using available resources. Think of it as a sub-function of organizational governance that relies heavily on a security governance framework and the availability of resources to mitigate cyber risks. Since every business process is unique, there is no one-size-fits-all framework for cyber governance. A typical framework in any organization includes
-
Review of potential risks
-
Escalation/de-escalation of risks
-
Involvement of the Board in mitigating risk decisions
-
Ensuring that the framework works seamlessly
-
Structuring cyber security system
-
Code of practices are implemented properly