Information security management
Information security (ISec) describes activities that relate to the protection of information and information infrastructure assets against the risks of loss, misuse, disclosure or damage.
Information security management (ISM) describes controls that an organization needs to implement to ensure that it is sensibly managing these risks.