Direct links from the subject.
| Property | Value |
|---|---|
|
The subject is an instance of a class. |
|
|
The subject is an instance of a class. |
An idea or notion; a unit of thought. |
|
A human-readable name for the subject. |
GV.RR-01.1: Organisation's top management shall be responsible and accountable for cyber- security risk and shall foster a culture that is risk-aware, ethical, and continually improving. |
|
GV.RR-01.1 |
|
|
http://cyfun.data.gift/data/loc_CyFun2025_Booklet_ESSENTIAL_E_p23 |
|
|
Relates a concept to a concept that is more general in meaning. |
|
|
A general note, for any purpose. |
The goal of this control is to ensure top management is accountable for cybersecurity risk and promotes a risk-aware and continuously-improving culture. To make this happen, the following should be considered: - Organisations' top management should agree on their roles and responsibilities in developing, implementing, and assessing the organisation’s cybersecurity strategy. - The expectations of organisations top management regarding a secure culture, including highlighting positive or negative examples of cybersecurity risk management, should be shared with the entire organisation. - Organisations top management should direct the senior-level executive (information) security officer (e.g. CSO, CISO) to maintain a comprehensive cybersecurity risk strategy and review and update it at least annually and after major events (see also GV.RR-02.2). - Reviews should be conducted to ensure adequate authority and coordination among those responsible for managing cybersecurity risk. |
|
A general note, for any purpose. |
<div><p>The goal of this control is to ensure top management is accountable for cybersecurity risk and promotes a risk-aware and continuously-improving culture. To make this happen, the following should be considered:</p><ul><li>Organisations' top management should agree on their roles and responsibilities in developing, implementing, and assessing the organisation’s cybersecurity strategy.</li><li>The expectations of organisations top management regarding a secure culture, including highlighting positive or negative examples of cybersecurity risk management, should be shared with the entire organisation.</li><li>Organisations top management should direct the senior-level executive (information) security officer (e.g. CSO, CISO) to maintain a comprehensive cybersecurity risk strategy and review and update it at least annually and after major events (see also GV.RR-02.2).</li><li>Reviews should be conducted to ensure adequate authority and coordination among those responsible for managing cybersecurity risk.</li></ul></div> |
|
A general note, for any purpose. |
The goal of this control is to ensure top management is accountable for cybersecurity risk and promotes a risk-aware and continuously-improving culture. To make this happen, the following should be considered: • Organisations' top management should agree on their roles and responsibilities in developing, implementing, and assessing the organisation’s cybersecurity strategy. • The expectations of organisations top management regarding a secure culture, including highlighting positive or negative examples of cybersecurity risk management, should be shared with the entire organisation. • Organisations top management should direct the senior-level executive (information) security officer (e.g. CSO, CISO) to maintain a comprehensive cybersecurity risk strategy and review and update it at least annually and after major events (see also GV.RR-02.2). • Reviews should be conducted to ensure adequate authority and coordination among those responsible for managing cybersecurity risk. |
|
A general note, for any purpose. |
The goal of this control is to ensure top management is accountable for cybersecurity risk and promotes a risk-aware and continuously-improving culture. To make this happen, the following should be considered: - Organisations' top management should agree on their roles and responsibilities in developing, implementing, and assessing the organisation’s cybersecurity strategy. - The expectations of organisations top management regarding a secure culture, including highlighting positive or negative examples of cybersecurity risk management, should be shared with the entire organisation. - Organisations top management should direct the senior-level executive (information) security officer (e.g. CSO, CISO) to maintain a comprehensive cybersecurity risk strategy and review and update it at least annually and after major events (see also GV.RR-02.2). - Reviews should be conducted to ensure adequate authority and coordination among those responsible for managing cybersecurity risk. |
|
A notation, also known as classification code, is a string of characters such as "T58.5" or "303.4833" used to uniquely identify a concept within the scope of a given concept scheme. |
GV.RR-01.1 |
|
skos:prefLabel, skos:altLabel and skos:hiddenLabel are pairwise disjoint properties. |
Top management cybersecurity accountability |
|
A resource has no more than one value of skos:prefLabel per language tag, and no more than one value of skos:prefLabel without language tag. |
Organisation's top management shall be responsible and accountable for cyber- security risk and shall foster a culture that is risk-aware, ethical, and continually improving. |
|
Relates a resource (for example a concept) to a concept scheme in which it is included. |
|
|
Relates a resource (for example a concept) to a concept scheme in which it is included. |
http://cyfun.data.gift/data/CyFun2025_delta_IMPORTANT_to_ESSENTIAL |
|
Relates a resource (for example a concept) to a concept scheme in which it is included. |
|
|
The number of triples associated with the subject. |
17 |
|
Specifies the dataset the subject is part of. |
Resultaten 1 - 19 of 19
Inverse links to the subject.
| Property | Subject |
|---|---|
|
Relates a concept to a concept that is more specific in meaning. |
Resultaten 1 - 1 of 1