Home
Learn More
Release Features
Success Stories
Contact Us
Search Archives
PRWeb Direct
Submit Release
July 9, 2008
 
Industry Categories  
News by Country  
News by MSA  
Todays News  
Browse by Day  
PR Trackbacks™  
Featured Videos  
ViewNews™  
eBook Digests  
RSS  
 
PRWeb, a leader in online news and press release distribution, has been used by more than 40,000 organizations of all sizes to increase the visibility of their news, improve their search engine rankings and drive traffic to their Web site.
 
Close Move
All Press Releases for January 31, 2008 Subscribe to this News Feed      
 

New Study Shows 38 Percent of Information Security Processes are Immature

The 2007 ISO 27001 Benchmark Study shows many organizations have gaps in their governance of information security.

Fairlawn, Ohio (PRWEB) January 31, 2008 -- New research from Wolcott Group (www.wolcottgroup.com), "The 2007 ISO 27001 Benchmark Study," shows that many organizations have significant gaps in how they manage information security. While most organizations have mature or developing controls for information security, many still have immature processes for key issues like security policy training, access control, asset management, business continuity, IT compliance auditing, and more.

Process Maturity Scorecard
Process Maturity Scorecard

One of the most significant findings from the study is that nearly half of the respondents rated their organization's approach to managing information security as 'initial' or 'non-existent'
"One of the most significant findings from the study is that nearly half of the respondents rated their organization's approach to managing information security as 'initial' or 'non-existent'," stated Gary Sheehan, CISSP, HISP, managing consultant for information security at Wolcott Group. "Essentially, this study demonstrates the need for organizations to adopt a more holistic approach to managing information security like ISO 27001/27002."

Highlights of Immature Controls and Processes:

  • 57% have immature processes for classifying the value of their information assets
  • 56% have immature employee training programs on information security policies and procedures
  • 47% have an immature approach to managing information security
  • 45% have immature business continuity processes
  • 36% have immature IT compliance auditing processes

"The 2007 ISO 27001 Benchmark Study" was based on a 20-question self-assessment survey that explored the major aspects of how organizations govern information security as it is aligned with the ISO 27001 international standard and the ISO 27002 best practice framework. The study had 89 participants from a variety of industries, with 88% being in an IT management role, and 62% from organizations with over 1,000 employees.

Interested parties can visit Download The 2007 ISO 27001 Benchmark Study to register to download a complimentary copy of the benchmark study.

A related webinar
On February 27, 2008, Wolcott Group will host a webinar to expand on the study's findings as well as cover some best practices for managing information security using the ISO 27001/27002 framework. For more information and to register for the webinar, please visit Register for the ISO 27001 Webinar.

The related Online ISO 27001 Self-Assessment is still available
The online ISO 27001 self-assessment that was used to collect the data for the benchmark study is still open for use at Take the ISO 27001 Online Self-Assessment. The self-assessment enables organizations to benchmark their information security practices against the ISO 27001 standard and their peers.

About Wolcott Group
Wolcott Group is one of the top U.S. firms for standards-based, information security training, consulting, and technology solutions. Wolcott Group is a member of the IT Governance Institute, an authorized training center for the Holistic Information Security Practitioner (HISP) certification, and an authorized BSi Management Systems' Associate Consultant for training and consulting on ISO 27001/27002. Wolcott Group is an IBM Premier Business Partner, a Microsoft Gold Certified Partner, and also partners with other information security technology vendors to help its clients to improve their information security practices. For more information, please visit Wolcott Group's web site.

# # #

Post Comment:
Trackback URL: http://www.prweb.com/pingpr.php/Q291cC1QaWdnLVN1bW0tQ291cC1aZXRhLVplcm8=

Technorati Tags

Bookmark -  Del.icio.us | Digg | Furl It | Spurl | RawSugar | Simpy | Shadows | Blink It | My Web



OPTIONS
Printer Friendly Version
Download PDF Version
Download Reader Version
BlogThis
ShareIt

Share The News

Submit this press release easily to any of these major bookmarking and social media sites.

CONTACT INFORMATION
DAN ALSIP
Wolcott Group
330-666-5900
Email us Here
ATTACHED FILES

There are no multimedia files attached to this release. If this is your release, you may add images or other multimedia files through your login.

ABOUT PRESS RELEASES
If you have any questions regarding information in these press releases please contact the company listed in the press release. Please do not contact PRWeb. We will be unable to assist you with your inquiry. PRWeb disclaims any content contained in these releases. Our complete disclaimer appears here.
 
Disclaimer: If you have any questions regarding information in these press releases please contact the company listed in the press release.
Please do not contact PRWeb®. We will be unable to assist you with your inquiry.
PRWeb® disclaims any content contained in these releases. Our complete disclaimer appears here.

© Copyright 1997-2008, Vocus PRW Holdings, LLC.
Vocus, PRWeb and Publicity Wire are trademarks or registered trademarks of Vocus, Inc. or Vocus PRW Holdings, LLC.

Terms of Service | Privacy Policy | Copyright