Problem:
Question 1: Why is administrative management so important when it comes to security operations?
Question 2: What is collusion? How can we prevent or place preventative controls to help stop or mitigate collusion?
Question 3: Should the information technology department and information security department operate separately? Or should they be in the same department? Why or why not?
Question 4: What are the differences between information technology governance and information security governance? Are their purposes different? If so are they leading towards the same outcome? What would that be?
Please read all the questions carefully and answer them.