Driven by defined requirements towards an effective information assurance programme

Risk-level-assessment

  • Identify the specific risks of the enterprise.
  • Define special requirements arising from the corporate structure, clientele or the competitive environment.

Implementation

  • Implement an information protection programme including measures for
    • Policy
    • Procedures
    • Products
    • People

Vulnerability analysis

  • Investigate real risk level by comparing actual processes with existing requirements.
  • Reveal weak points and risk potential
  • Give recommendations for future risk management.

On-going protection

  • Safeguard procedures: integrate and practice information protection in all operating processes.
  • Ensure the long-term efficiency of the various custodial zones through of regular trainings.