

The network is the vector by which most cyberattacks reach an organization’s systems and its first line of defense against cyber threats. Network security management is a vital component of a network management strategy. For example, healthcare organizations are governed by the Health Insurance Portability and Accessibility Act (HIPAA), and the Payment Card Industry Data Security Standard (PCI DSS) protects payment card information. Many organizations have internal policies for managing access to data, but some industries have external standards and regulations as well. Information security management programs should ensure the confidentiality, integrity, and availability of data. Information security management includes implementing security best practices and standards designed to mitigate threats to data like those found in the ISO/IEC 27000 family of standards. Three common types of security management strategies include information, network, and cyber security management. Security management can come in various different forms.
