17. Governance Elements

Government is who rules; governance is how they rule (Rule implementations).

Any business or organization exists to fulfill a purpose.

To complete the objective requires that decisions are made, rules and practices are defined, and policies and procedures are in place to guide the organization in its pursuit of achieving its goals and mission.

Laws and regulations guide the development of standards which cultivate policies which result in procedures

Steps of Governance

Regulations and Laws

Regulations and associated fines and penalties can be imposed by governments at the national, regional, or local level.

Examples:

Standards

Organizations use multiple standards as part of their information systems security programs, both as compliance documents and as advisories or guidelines. (In simple terms: Standard means standard like facts, this is this cannot change that.)

It has a wide range of issues and ideas that may provide assurance that an organization is operating with policies and procedures that support regulations and widely accepted best practices.

Examples:

Policies

Procedures

  • Procedures define the explicit, repeatable activities necessary to accomplish a specific task or set of tasks.
  • Properly documenting procedures and training personnel on how to locate and follow them is necessary for deriving the maximum organizational benefits from procedures.


  • discord :