Abstract :
Managing IT system security is a never-ending effort. Regardless of how well you secure a system today, new threats and issues will appear tomorrow. User support, IT staff enthusiasm, and management buy-in are critical assets for overcoming the constant barrage of threats. Unfortunately, there is no standard playbook that tells IT managers how to manage these relationships and focus them on security issues. Every IT staff must build its own strategy. The article outlines concepts to manage security. This list serves as a good source of ideas for how IT managers can use awareness to advance their security goals