The importance of information in any enterprise must be an essential asset to protect, whether large or
small. It is important to recognize that information security is the most basic basis for ensuring corporate
sustainability and is the most fundamental to enterprise development. Therefore, it is important to note the
importance of information security governance, and the difference between corporate governance at the
enterprise level and information security governance, Respectively. The purpose of PDCA, the purpose of
the information protection governance, the processing method and the processing procedure are examined.
Through the case of Company A, we identify what are the threats to enterprise information security in
terms of information security governance and identify methods and procedures for identifying them. In
addition, a model for evaluating this is presented and the implications of information protection are also
checked. This paper suggests well-established enterprise security regulations and information security
guideline for the utilization of information protection governance, and it will be helpful for companies and personnel who want to manage enterprise information safely without any problems Expect.