To provide all DGEs with the standards and minimize information security-related risks and damages by preventing and/or minimizing threat incidents. To preserve an appropriate level of confidentiality, integrity, and availability for information asset handling controls in DGEs.
Establish a Government wide-regulatory approach to information security Prescribe high-level mechanisms that help identify and prevent information security compromises to preserve the reputation of DGEs Identify the responsibilities to maintain a good information security practice environment