Standard of Good Practice for Information Security
A comprehensive security framework that guides organisations to better cyber security
Standard of Good Practice for Information Security (SOGP) presents business-oriented information security topics with practical and trusted guidance, helping organisations deliver up-to-date good practice that can be integrated into their business processes, information security programme and policy, risk management and compliance arrangements.
Designed for risk management specialists, information security managers and security practitioners, SOGP helps organisations:
- be agile when exploiting new opportunities whilst managing the associated risk
- respond to rapidly evolving threats, avoiding costly incidents, operational impacts and reputational damage
- identify and meet regulatory and compliance requirements.
SOGP is aligned with a wide variety of external standards and frameworks, including ISO/IEC 27002, NIST Cybersecurity Framework, and the CSA Cloud Control Matrix, enabling organisations to consolidate compliance activities in a single, unified approach.
Respond rapidly to mounting threats with a ready-made framework of security controls.
Work towards certification of compliance in an efficient, cost-effective manner.
Assess information risk
Deliver comprehensive, consistent protection in line with your organisation’s risk appetite.
Greatly reduce the time and effort required to produce information security policies and procedures.
Manage supply chains
Incorporate your supply chain into a risk-based approach to information security.
Increase the profile of information security across the business.
SOGP cross reference to the CSA Cloud Controls Matrix v4
Using the SOGP and CCM for Multi-Cloud Security
A webinar exploring how the cross reference can help security practitioners deploy effective controls over their multi-cloud environments.
Controls, Policies and Standards Support
Leverage ISF expertise to develop, validate and improve your security controls and policies; creating standards that staff can easily follow.