The Alliance for Enterprise Security Risk Management (AESRM) was formed by three leading international security associations: ASIS International, ISACA and the Information Systems Security Association (ISSA). The alliance brought together more than 90,000 global security professionals with broad security backgrounds and skills to address the significant increase and complexity of security-related risks to international commerce from terrorism, cyberattacks, Internet viruses, theft, fraud, extortion and other threats.
It is clear from this list of security-related risks that management now must deal with security challenges that are unlike any that have been experienced before. There is no longer the luxury of dealing with small, contained risks. Instead, management must contend with risks that are often international in scope, cross multiple areas of security expertise and can quickly impact the good reputation, finances or network presence of the organization.
In addition to this, governments around the world are feeling the need to create a stable business environment and protect individual privacy by legislating security and integrity. Legislative and regulatory requirements are having an increasingly significant impact on both the bigger picture of how the business is managed as well as the everyday details of prioritizing and undertaking activities.
A movement toward convergence of security has arisen to deal with the increasing complexity and cross-disciplinary nature of today’s challenges. To ensure the full advantages of this disciplinary convergence, there is a need to prepare security professionals for new roles, heightened responsibilities and an expanded mastery of complex business risk management. It is to help educate individuals and enterprises on the advantages and challenges of security convergence that AESRM was formed.
The active members of AESRM are:
ASIS International (ASIS) — The preeminent organization for security professionals, with more than 34,000 members worldwide. Founded in 1955, ASIS is dedicated to increasing the effectiveness and productivity of security professionals by developing educational programs and materials that address broad security interests, such as the ASIS Annual Seminar and Exhibits, as well as specific security topics. ASIS also advocates the role and value of the security management profession to business, the media, government entities, and the public. By providing members and the security community with access to a full range of programs and services, and by publishing the industry’s number one magazine — Security Management — ASIS leads the way for advanced and improved security performance.
ISACA® — With more than 86,000 constituents in more than 160 countries, ISACA® (www.isaca.org) is a recognized worldwide leader in IT governance, control, security and assurance. Founded in 1969, ISACA sponsors international conferences, publishes the Information Systems Control Journal®, and develops international information systems auditing and control standards. It also administers the globally respected Certified Information Systems Auditor™ (CISA®) designation, earned by more than 60,000 professionals since 1978; the Certified Information Security Manager® (CISM®) designation, earned by more than 9,000 professionals since 2002; and the new Certified in the Governance of Enterprise ITTM (CGEIT™) designation.