In: Operations Management
Undertake research to find how security culture is developed and maintained in non-IT-based environments. How can lessons from these implementations be used for developing and sustaining IS security culture?
In non-IT environment security is not that major a concern for the firm's, therefore, they do not invest in dedicated systems and department for performing this task. But they do invest in pre-existing solutions for their security like monitoring software, databases and servers for backup, using cloud-based app services for implementation of a separate area to control and automate their cleanup and detection processes. Using that, and, educating the employees about security measures that can and need to be followed by them to maintain the integrity of the data and by investing in a secure development lifecycle, companies that are not IT based can improve their security and create a secure environment.
Utilizing the teachings from the above points, an IT company or firm can always increase their security measures by investing in a good cloud-based solution which will enable them to outsource their resource dependence which could then be used to increase the security of the system. Drills and a trained staff are always an advantage to any security system and also investing in a security development lifecycle is beneficial for any IT based company too.