Does your organization regularly reevaluate its IT & Security posture? If so, how often?


Yes, on our 5-year plan27%

Yes, once a year28%

Yes, we constantly question our posture and look for newer, better architectures and solutions27%

Yes, but not regularly - only when a pressing need emerges7%

lock icon

Please join or sign in to view more content.

11.8k views15 Upvotes3 Comments
Sort By:
CTO for Digital & IT in Healthcare and Biotech2 years ago
We tend to update our risk matrix every year to make sure our priorities are still correct. We also have a multi-year security roadmap that lays out the overall trajectory we are on, and that is updated as needed throughout its lifetime, if only to go to the powers-that-be and obtain the funding approval for the next year's tranche of topics. We also semi-regularly bring in outside expertise to perform an overall assessment of our approach to security (organization, priorities, tools...) and ensure we are still reasonably in line with industry best practices.
I find there is a lot of value in these roughly annual updates, but in between we do need to let the teams actually get stuff done without pulling the rug out from under them, so I am not sure it would be very useful to do these kinds of exercices more often, barring of course some sort of major disruption.
Senior devops engineer in Software2 years ago
yes , it should required for every organisation if its small size or mid size.
Assistant Manager in Transportationa year ago
Yes and each quarter 

Content you might like

IT Analyst6 days ago
Viva Engage is very good alternative to Workplace.
551 views1 Comment
Head of Enterprise Architecture MERCK Group in Healthcare and Biotecha year ago
Strategy & Architecture
Read More Comments
39k views5 Upvotes34 Comments

Yes, more jobs created55%

Yes, jobs lost to AI32%

Other (please comment)12%

View Results
50k views11 Upvotes47 Comments