From the course: Certified Information Security Manager (CISM) Cert Prep (2022): 2 Information Security Risk Management
Unlock the full course today
Join today to access over 24,700 courses taught by industry experts.
Measuring compliance and security posture
From the course: Certified Information Security Manager (CISM) Cert Prep (2022): 2 Information Security Risk Management
Measuring compliance and security posture
- [Instructor] Security training is an important component of any organization's information security program. If employees don't know their security responsibilities, you can't depend upon them to do their part to protect information. It's important that organizations take steps to measure the effectiveness of their security education efforts. Earlier, we looked at one way to measure security awareness through the use of simulated phishing campaigns. This really is a great way to measure the effectiveness of anti-phishing education programs, but you don't need to go to this great length to measure the effectiveness of your overall security awareness efforts. Measuring efforts don't need to be complicated. One easy way to measure the effectiveness of your program is to simply ask users how they feel about security education in a survey. You might just ask them, how well do you think our organization prepares you to deal…