Andrew Cooper

Essential Eight is Not a Complete Cyber Strategy

The Essential Eight is what it advertises – eight key mitigation strategies that work together primarily to prevent and limit cyber incidents. It has rightly become a widely adopted baseline for Australian organisations in and beyond the public sector. But it explicitly states that it is not a complete security strategy, and this assertion is correct. Organisations need to understand what Essential Eight does and does not cover, and use this to plan their next steps.

Read More »

Balancing ICT Governance and Management

Understanding the differences between ICT governance and management is crucial for success in the digital age. Find out why striking the right balance is essential for organisational growth and effective stakeholder engagement.

Read More »

That’s Not Our Policy: Differentiating Policy, Standard, Guideline and Procedure

ICT executives need to establish guardrails to govern and manage the use of technology for their organisation and its stakeholders. Policies are the tool that comes immediately to mind when doing so, but they are not the only way. Use this handy IBRS model to help decide if a policy is the best solution, or whether a simpler guideline, standard or procedure could be a better fit.

Read More »

Search