During recent RSA Conference 2016 in Singapore there was an interesting presentation on the elements or items to be presented to sponsor to consider when asking for resources – in form of Money, time and people to devote on a particular information security initiative.
You must be prepared to have answers to following 3 questions.
- How does it contribute in gaining competitive advantage for the organisation?
- What the future benefits of the investment?
- How does it compare to similar companies?
I find these questions are relevant during discussions on a new innovative technology initiative being pursued by business. Answers to above questions would also help Security folks understand the business context and perspective.
Above list shared by security team is also proof of how both business and security has lots to learn from each other. How this partnership can go a long way in shortening the time span in implementation of new technologies.