Research / all articles
Article

Publication year:

IT security in standard operations services

In this article, we review which security activities can generally be expected to be included in the services when entering into an outsourced IT operations agreement.

The increased focus on IT security in private companies and public-sector organisations is currently confronting IT departments with a very wide range of complex sourcing-related strategic decisions tied to IT security. These decisions cover everything from procuring advisory services to developing security and compliance policies to purchasing specific products.

As a starting point, these activities should always be included in an outsourced IT operations agreement without resulting in additional costs.

In this article, we take a closer look at the area of IT security at the operational layer – in other words, the services related to operating the IT environment’s infrastructure, including servers, networks, storage and workstations. More specifically, the operational layer viewed from an outsourcing perspective, where an external supplier is responsible for operations.