Good security management encompasses the identification of an organization's assets (including people, buildings, machines, systems and information assets), followed by the development, documentation, and implementation of policies, procedures and technical controls to protect your assets.

All organisations whether large or small need to be able to effectively implement security management practices and solutions that work together to minimise the risks your organisation will face on a daily basis. Maintaining good security management however requires more than just implementing tools or policies and should include the following; 

• Risk assessment and risk management
• Internal and External Audits
• Awareness of Laws and regulation
• Business continuity planning
• Internal controls
• Alignment with Standards (such as Cyber Essentials, IASME Governance, PCI DSS and the ISO 27000 family)
• Implementation of Policies and procedures
• Incident Response 


