Information security management
CONTROLS THAT AN ORGANIZATION NEEDS TO IMPLEMENT FOR PROTECTING THE CONFIDENTIALITY, AVAILABILITY, AND INTEGRITY OF ASSETS FROM THREATS AND VULNERABILITIES
Information Security Management; Information security management system
Information security management (ISM) defines and manages controls that an organization needs to implement to ensure that it is sensibly protecting the confidentiality, availability, and integrity of assets from threats and vulnerabilities. The core of ISM includes information risk management, a process that involves the assessment of the risks an organization must deal with in the management and protection of assets, as well as the dissemination of the risks to all appropriate stakeholders.