1. The document discusses the relationship between information security and security architecture, noting that while they are complementary, they are often confused or conflated in practice.
2. It recommends developing strategic plans and implementation schedules for both information security and security architecture to better disentangle their spans of control, authorities, and skill set requirements.
3. Having clearly defined strategic plans would help manage the "practice edges" between information security and security architecture.