Sample IT Security Organization Structure based on ISO 27001/17799

So how is IT Security in company should organized? How many IT Security personnel needed? How many department should created? How is organization reporting model should established?
Based on ISO 27001/17799 the IT Security Organization should be established using this scenario:
- Information Security Manager
- Security Administration
- Policy & Compliance
- Risk & Contingency Management
- Security Operations






