Computer security, cyber-security or security of information technologies is the field that has to do with the protection of the computer infrastructure and/or telematics and all the information contained in it. This area includes any type of software such as databases or files, hardware, computer networks and anything that involves confidential information on a computer. Security audit assessments have become key tools for organizations due to the increasing number of cyber-attacks. Increasingly, organizations need to strengthen their defenses against data breaches, cyber-crime and fraud, and to ensure a more robust security posture. Considering the aforementioned aspects, this paper introduces the digitalization process within organizations, the cyber-security types of threats and countermeasures, followed in the end by the current approaches of the security and privacy mechanisms implementation and the development of a security and privacy framework along with the necessary phases for its implementation within organizations in every industry.