Enterprise information security architecture is becoming a common practice within financial institutions around the globe. The primary purpose of creating an enterprise information security architecture is to ensure that business strategy and IT security are aligned.1
Enterprise information security architecture was first formally positioned by Gartner in their whitepaper called “Incorporating Security into the Enterprise Architecture Process”.2
Whilst security architecture frameworks are often custom designed in enterprise organisations, several models are commonly used and adapted to the individual requirements of the organisation
Commonly used frameworks include:
"21 principles of enterprise architecture for the financial sector". developer.ibm.com. Retrieved 2022-09-28. https://developer.ibm.com/articles/enterprise-architecture-financial-sector/ ↩
"Incorporating Security Into the Enterprise Architecture Process". www.gartner.com. Archived from the original on June 6, 2010. Retrieved 30 August 2015. https://web.archive.org/web/20100606014912/http://www.gartner.com/DisplayDocument?ref=g_search&id=488575 ↩