Guiding principles for five CSFs with difference/contradiction
| CSF | Ranking (Stage) | Guiding principle | |
|---|---|---|---|
| One | Two | ||
| CSF-DS6: Build Security Awareness Campaigns | 11 | 1 | Raise employee IS/cyber security awareness and knowledge to enhance organisational maturity |
| CSF-EV1: Maintain Quarterly Evaluation of Employee Performance | 1 | 11 | Evaluate employee performance at a frequency that aligns with the organisational IS/cyber security strategy |
| CSF-DS5: Adhere to Organisational Security Policy and the “Law of the Land” | 9 | 2 | Secure top management support to encourage all employees to comply with IS/cyber security policy |
| CSF-DS2: Know Your Audiences to Ensure Content Suitability | 3 | 6 | Avoid a one size fits all approach to programme content to promote employee engagement |
| CSF-DS4: Design for Cultural Context and Employee Cultural Diversity | 6 | 9 | Appreciate employee cultural differences to shape programme content |
| CSF | Ranking (Stage) | Guiding principle | |
|---|---|---|---|
| One | Two | ||
| 11 | 1 | Raise employee IS/cyber security awareness and knowledge to enhance organisational maturity | |
| 1 | 11 | Evaluate employee performance at a frequency that aligns with the organisational IS/cyber security strategy | |
| 9 | 2 | Secure top management support to encourage all employees to comply with IS/cyber security policy | |
| 3 | 6 | Avoid a one size fits all approach to programme content to promote employee engagement | |
| 6 | 9 | Appreciate employee cultural differences to shape programme content | |
Sharing content requires targeting cookies to be enabled. Please update your cookie preferences to use this feature.