Areas to Monitor
Internal Factors (business drivers) Examples
External Business drivers
Risk Assessment steps TLPCR
Risk Profile
Developing IG Strategic Plan
Developing IG Framework
Analyze policies and procedure
Think can my lawyer defend it.
Establishing enterprise IG policies and standards
Based on the gap analysis begin developing policies and standards to be used
Develop auditing and enforcement mechanisms
critera and metrics should be created and audits against those meterics. T
Auditing should be iterative building on itself
Audits are used to effect accountability
keep corporate culter in mind
Establishing IG Program
Establish program scope, mandate and reporting
Generally Accepted Recordkeeping principles
AT IP CARD
BUsiness case for IG
*Id issues you seek to solve
*Description of ho IG is related to the issue and is part of the solution
*quanitifcation of the problem in terms of cost and risk to org
*description of solution
*estimate costs money time equip
ID potential funding sources and methods
*defined accountability for the new process or prog
*metrics by which you will judge success
ROI
Factors to modify IG program
Establishing IG governance integration and oversight
* identifying benchmarks
Algining Tech with IG framework
Auditing stages 7