Premium Content

Access "Perspectives: Lessons learned in BS 7799 certification"

Published: 15 Oct 2012

Earning the BS 7799 certification forces enterprises to get organized. Government regulations are forcing enterprises to develop repeatable, auditable security programs. Many security and risk managers are leaning on accepted standards to build umbrella security programs that encompass numerous best practices, demonstrate security, show repeatable processes for compliance and continual improvement, and better organize security efforts and budgets. My organization, the Bank of Montreal (BMO), is the first Canadian company to receive security certification under BS 7799, the British standard for security and the basis of ISO 17799. The ISO standard doesn't have a certification component, but, as we discovered, BS 7799 Part 2 provides a good framework for organizing security activities and maintaining regulatory compliance. Here are some of the lessons we learned during our certification process: Take the training. The BS 7799 certification bodies offer courses on attaining and maintaining certification—they're well worth the time. You will learn the difference... Access >>>

Access TechTarget
Premium Content for Free.

By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

What's Inside


More Premium Content Accessible For Free