Discussion Post: Information Security Compliance
• What is IT Security Auditing? What does it involve?
• Why are Governance and Compliance Important?
• Explain in details the roles and responsibilities in an organization associated with the following:
o Risk Manager
o Auditor
o Executive Manager
• Define the Certification and Accreditation (C&A) Process and briefly discuss the phases of C&A.
The response should include a reference list. Using double-space, Times New Roman 12 pnt font, one-inch margins, and APA style of writing and citations.