Understanding asset management
Asset management within the field of cybersecurity is an important topic that should never be overlooked. It simply involves a continuous process of always updating the inventory of all the Information Technology (IT) assets within an organization. Additionally, asset management involves the continuous search and discovery of any security gaps that exist in the organization's IT assets, such as device or application misconfigurations, allowing cybersecurity professionals to implement enforcement for security controls to ensure these security gaps are quickly identified and resolved.
Important note
If you recall, in Chapter 3, Discovering Security Concepts, we discussed the various types of assets within any organization: tangible, intangible, and people. Therefore, it's essential to ensure all our assets are accounted for and tracked properly.
Many people may ask the question, what is the impact if an organization does not properly...