<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Governance committee in decision task in CISSP Study Group</title>
    <link>https://community.isc2.org/t5/CISSP-Study-Group/Governance-committee-in-decision-task/m-p/62893#M945</link>
    <description>Governance should flow down from the board and for security and data protection computers need good actually proposals with data to decide sign off on. After the experts/enthusiasts/best fit/stakeholder folk have created this the committee considers it and the output for that goes into your recorded designs for accountability. It’s important everyone has an opinion, but that no opinion is given too much weight.</description>
    <pubDate>Mon, 18 Sep 2023 15:21:08 GMT</pubDate>
    <dc:creator>Early_Adopter</dc:creator>
    <dc:date>2023-09-18T15:21:08Z</dc:date>
    <item>
      <title>Governance committee in decision task</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Governance-committee-in-decision-task/m-p/62862#M936</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i have a problem to understand the tasks of an governance committee. For my understanding the take care of handling procedure of decision making, validation of policy, but not in execute decisions.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now I have the question of a merge of to companies with different security frameworks and how to handle this.&lt;/P&gt;&lt;P&gt;The correct answer is:&lt;/P&gt;&lt;UL class=""&gt;&lt;LI&gt;Use of a governance committee.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;For my understanding governance make decisions. For me this should be done finally be senior management, after expert analysis. Something in this way.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How is your view?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;P&gt;OliLue&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 10:44:07 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Governance-committee-in-decision-task/m-p/62862#M936</guid>
      <dc:creator>OliLue</dc:creator>
      <dc:date>2023-10-09T10:44:07Z</dc:date>
    </item>
    <item>
      <title>Re: Governance committee in decision task</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Governance-committee-in-decision-task/m-p/62887#M942</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1226229547"&gt;@OliLue&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please post entire question.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;d&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Sep 2023 13:53:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Governance-committee-in-decision-task/m-p/62887#M942</guid>
      <dc:creator>dcontesti</dc:creator>
      <dc:date>2023-09-18T13:53:25Z</dc:date>
    </item>
    <item>
      <title>Re: Governance committee in decision task</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Governance-committee-in-decision-task/m-p/62893#M945</link>
      <description>Governance should flow down from the board and for security and data protection computers need good actually proposals with data to decide sign off on. After the experts/enthusiasts/best fit/stakeholder folk have created this the committee considers it and the output for that goes into your recorded designs for accountability. It’s important everyone has an opinion, but that no opinion is given too much weight.</description>
      <pubDate>Mon, 18 Sep 2023 15:21:08 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Governance-committee-in-decision-task/m-p/62893#M945</guid>
      <dc:creator>Early_Adopter</dc:creator>
      <dc:date>2023-09-18T15:21:08Z</dc:date>
    </item>
    <item>
      <title>Re: Governance committee in decision task</title>
      <link>https://community.isc2.org/t5/CISSP-Study-Group/Governance-committee-in-decision-task/m-p/63819#M973</link>
      <description>&lt;P&gt;Governance groups contain members of senior management - which is a more fulsome answer.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Answers always take into account the "best" answer. Whereas yours is correct, the best answer is the Governance group.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When a governance group is spun up. TOR's (Terms of Reference) are created outlining their purpose and their scope of work/decisions.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The program sponsor and other key leaders would agree on the TOR.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 23 Oct 2023 18:51:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/CISSP-Study-Group/Governance-committee-in-decision-task/m-p/63819#M973</guid>
      <dc:creator>JayH</dc:creator>
      <dc:date>2023-10-23T18:51:25Z</dc:date>
    </item>
  </channel>
</rss>

