Today, more than ever, with the increasing number of cybersecurity attacks on government organizations and threats of data breaches to the privacy of government officials and their staffs, and government contractor staffs, strong IT Governance based on sound IT risk management is critical to restoring confidence in the security and privacy protections provided by our Federal Government. This is no longer purely an IT technology issue but an issue that must be addressed at the top layers of government – from the “overseers” of IT policy (e.g., Office of Management and Budget (OMB), National Institute for Standards and Technology (NIST), National Security Agency, etc.) to the auditors (e.g., Government Accountability Office, Agency Inspectors Generals, independent assessors, etc.) to the heads of Departments/Agencies and their top-level senior executives (i.e., the C-Suite of government organizations).