IT Security Risk Management: A Lifecycle Approach (ITSG-33)

With today’s dynamic threat environment and Government of Canada (GC) fiscal constraints, information technology (IT) security can no longer be an afterthought, but rather needs to be a vital component in both your departmental and IT project plans. With that in mind, the ITSG-33 publication has been developed to help government departments ensure security is considered right from the start. By following the principles within this publication, you not only help ensure predictability and cost-effectiveness, you also help ensure that there are no hidden surprises preventing you from obtaining authority to operate and maintaining continued authorization.

Data and Resources

Additional Info

Field Value
Last Updated January 16, 2026, 20:47 (UTC)
Created January 16, 2026, 20:47 (UTC)
contains_pii non
crisis_categories Fortes pluies
criticality_level Faible
data_formats HTML
fair_openness Level 2 - Machine-readable
geographic_scope Canada
sensitivity_level Faible
source_inventaire Inventaire_W
source_url https://open.canada.ca/data/en/dataset/a2fe4b67-a020-48a8-a5b0-d303966d5f2d
subject information_and_communications, science_and_technology
update_frequency not_planned
year_most_recent 2023-03-01 20:40:43.286000
year_start 2019-12-12 21:42:26.987000