科研速览 · Science Skim继续刷下去 · Keep skimming →
2026-07-31· Accountability

Governance and Leadership for Defensive Security

Jason Edwards

原始摘要(英文原文)· Original abstract
Governance and leadership shape defensive outcomes long before an alert fires by turning executive intent into priorities, funding decisions, and measurable operating conditions. This chapter explains how clear decision rights, accountability models, and operational oversight reduce ambiguity during incidents and prevent defensive programs from devolving into local optimization and reactive firefighting. Readers learn how governance creates speed and consistency under pressure by defining escalation thresholds, containment authority, and evidence expectations. The chapter distinguishes policies, standards, and procedures as complementary layers that must remain aligned without duplicating one another. Policies establish durable non-negotiable expectations and authority, standards translate those expectations into testable minimum requirements, and procedures provide step-by-step execution and handoffs that work in real environments. The discussion emphasizes how exceptions and drift can silently erode control health, and how disciplined oversight and review cadences keep delegated responsibilities from turning into abdication. Finally, the chapter shows how to translate technical risk into executive decisions and investment priorities by connecting exposures to business-critical services, data, and credible loss scenarios. It outlines how leaders manage competing priorities by protecting time for hygiene and improvement while enabling decisive containment when the impact is material. AI-enabled decision support is treated as a governed accelerator, with a focus on evidence vs inference, telemetry dependencies, human-in-the-loop approval boundaries, auditability, and avoiding false confidence.
读原文 · Read the paper ↗

AI 追问PRO

登录后使用 AI 追问

讨论区

登录后参与讨论

相关论文 · Related

Governance and Leadership for Defensive Security — 科研速览 Science Skim