Many organisations must comply with a mixture of state-mandated, industry-specific and international cyber security regulations. This includes, but isn’t limited to: These can be challenging to navigate, particularly if you also throw in privacy legislation like the CPRA (California Privacy Rights Act) and the EU GDPR (General Data Protection Regulation). The US may even see a federal privacy law in due course. These types of laws require you to secure your data and/or systems, often permitting a risk-based approach. The good news is that this makes compliance less arduous. The bad news is that these laws can be vague about how to go about security.
The post 5 Top Cyber Security Frameworks appeared first on IT Governance Blog.