Chief Security Officer (CSO)
As explained in Chapter 6, a chief security (CSO)should be independent of other information systems functions and should report to either the chief operating officer (COO) or the CEO.
The CSO must understand the company's technology environment and work with the chief information officer (CIO) to design, implement, and promote sound security policies and procedures. The CSO disseminates information about fraud, errors, security breaches, and other improper system uses and their consequences. It is especially important that the CSO work closely with the person in intruder to bypass the most elaborate logical access controls.