Document Information
Engaging the Board: Corporate Governance and Information Assurance
This report, prepared for and funded by the Information Assurance Advisory Council, analyzes the relationship between corporate governance and information assurance. The study examines the ways in which information assurance can be embedded into corporate risk management processes in the changing corporate governance environment. Corporate governance now calls for effective management of risks but board-level awareness is not yet being translated into effective controls. This study outlines the ways in which information assurance can be embedded into corporate risk management practices and how companies can be incentivized to adopt good practices.
Support RAND Research — Buy This Product!
Paperback Cover Price: $18.00
Discounted Web Price: $16.20
Pages: 37
ISBN/EAN: 0-8330-3508-8
Free, downloadable PDF file(s) are available below.
RAND makes an electronic version of this document available for free as a public service. If you find this information valuable, please consider purchasing a paper copy of the full document to help support RAND research.
Use Adobe Acrobat Reader version 7.0 or higher for the best experience.
Contents
Chapter One:
Introduction
Chapter Two:
Corporate Governance & Risk Management
Chapter Three:
Information Assurance: Managing Information Age Risk
Chapter Four:
Elements of Corporate Information Risk Management
Chapter Five:
Incentivising the Board
Chapter Six:
Recommendations
Appendix:
International Perspectives
The research reported here was sponsored by The Information Assurance Advisory Council (IAAC). Further information may be found at their website: www.iaac.org.uk.
The monograph/report was a product of the RAND Corporation from 1993 to 2003. RAND monograph/reports presented major research findings that addressed the challenges facing the public and private sectors. They included executive summaries, technical documentation, and synthesis pieces.
Permission is given to duplicate this electronic document for personal use only, as long as it is unaltered and complete. Copies may not be duplicated for commercial purposes. Unauthorized posting of RAND PDFs to a non-RAND Web site is prohibited. RAND PDFs are protected under copyright law. For information on reprint and linking permissions, please visit the RAND Permissions page.
The RAND Corporation is a nonprofit research organization providing objective analysis and effective solutions that address the challenges facing the public and private sectors around the world. RAND's publications do not necessarily reflect the opinions of its research clients and sponsors.
* RAND research is conducted across divisions, centers, and projects; these organizational components are represented in the "Related RAND Divisions" section above.


Top