Abstract: We consider IT security as quality that must actively be produced, and not just monitored. Extending traditional ISMS, larger IT organizations require a “management system” for organizing, orchestrating, and optimizing IT service security. This short webinar provides a dozen tested and proven principles for defining and setting up such a system. Most other frameworks…