Summary
Hopefully, you see the bigger picture as it relates to Regulatory and Compliance after reading through this chapter. Also, the reality is that this is an area where you are going to need a lot of support from others throughout the organization, more specifically the legal team. As regulations continue to be released and evolve, it is critical that someone in your organization stays current with any requirements from these regulations that have an impact on your organization. The bigger your footprint, the more regulations you are going to need to comply with, and it will be critical that you validate enforcement is occurring for any required regulation. To support this enforcement, you will need to ensure audits are conducted by a third party. You do not want to explain to anyone why you weren’t in compliance with a regulation after a breach has occurred within your organization. Hence the importance of regulations and compliance within the cybersecurity program.
...