SeatWork #2

12345678910111213141516171819
Across
  1. 1. The practice of protecting information, systems and assets from threats.
  2. 4. A model where decision-making is spread across units.
  3. 7. The detailed steps employees follow to apply a policy.
  4. 8. Setting security objectives, identifying risks and allocating resources.
  5. 11. The executive who leads and manages the organization’s security program.
  6. 14. A model where one authority makes all security decisions.
  7. 16. Making sure security strategies support business goals.
  8. 17. Using third-party providers for services such as managed security.
  9. 18. Directing and motivating teams to meet security objectives.
  10. 19. A person who oversees IT systems and implements security measures.
Down
  1. 2. Meeting mandatory laws, regulations and industry standards.
  2. 3. A person who checks systems for compliance and weaknesses.
  3. 5. Structuring people and resources to execute the security plan.
  4. 6. The chance that a threat could harm systems, data or reputation.
  5. 8. A high-level rule that states how an organization protects its information.
  6. 9. A professional who monitors networks and investigates threats.
  7. 10. The system of directing and controlling security decisions and accountability.
  8. 12. A structured set of best practices and standards for managing security.
  9. 13. A model combining centralized standards with local flexibility.
  10. 15. Monitoring security performance and making improvements.