Wednesday, 10 August 2016

Infosec baselines, Cyber Security Essentials and motorcycling

An "information security baseline" is like the CBT (compulsory basic training) that would-be motorcyclists take, to allow them to ride on the road. It’s not like passing the UK driving test, which is analogous to ISO/IEC 27001.

Nor is it like Cyber Security Essentials.


On the scale of “competence to drive”, Cyber Security Essentials rates approximately as high as the sight test (can you read a numberplate at X distance). If you can't pass it it, you DEFINITELY shouldn’t be on the road. 

Having passed it doesn’t tell anyone that you are a competent rider, but it tells them that you probably aren’t an unguided missile.

No comments:

Post a Comment