For 2006, security is no longer the most pressing of the IT issues; it does, however, remain a major consideration. Security affects many aspects of IT — operational, complexity and risks of IT systems and measurement of value, to name just a few examples. If an organisation had a separate IT security department, this department would be solely responsible for not only the selection and maintenance of IT security solutions, but also for approving the new solutions requested by the IT department and the rest of the business. This responsibility is taken away from the IT department, leaving it to concentrate on fulfilling the organisation’s objectives.
http://amch.questionmarket.com/jsc/jsc.html?s=19&c=16325408&v=240460&