Understanding the typical organizational hierarchy structures of an information security office
We've talked about different industries, sectors, and paradigms, but how is information security programmatically executed in an organization. You wouldn't have only 10 security operations analysts for a cybersecurity office and call it a day. You would be missing significant organizational elements. Let's explore what a typical cybersecurity program role and structure would look like. This way, you can identify the roles that Kim shared with how they interrelate and how you fit in.
The typical information security office organization can be seen in the organization chart in Figure 3.4. This structure is typical with capabilities grouped by function related to an information security program.