Using Your CISSP Certification to Be an Agent of Change

As a certified security professional, you’re an agent of change in your organization: The state of threats and regulations is ever-changing, and you must respond by ensuring that your employer’s environment and policies continue to defend your employer’s assets against harm. Here are some of the important principles regarding successful agents of change:

check.png Identify and promote only essential changes.

check.png Promote only those changes that have a chance to succeed.

check.png Anticipate sources of resistance.

check.png Distinguish resistance from well-founded criticism.

check.png Involve all affected parties the right way.

check.png Don’t promise what you can’t deliver.

check.png Use sponsors, partners, and collaborators as co-agents of change.

check.png Change metrics and rewards to support the changed world.

check.png Provide training.

check.png Celebrate all successes.

remember.eps Your job as a security professional doesn’t involve preaching; instead, you need to recognize opportunities for improvement and lower risks to the business. Work within your organization’s structure to bring about change in the right way. That’s the best way to reduce security risks.

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
18.223.206.69