Home > Security All-in-One Guides > Compliance > Infosec-Related Regs > General > The 5 pillars of successful compliance
All-in-One Guides: Compliance:
EMAIL THIS
 START   SOX SCHOOL   INFOSEC-RELATED REGS   STANDARDS   PROCESS IMPROVEMENT   PEOPLE & POLICY   TECHNOLOGY   AUDITS   
Infosec-Related Regs


General
<< PREVIOUS | NEXT >>: What to tell senior management about regulatory...
 TIPS & NEWSLETTERS TOPICS 

COMPLIANCE COUNSELOR

The 5 pillars of successful compliance


Pamela Fusco
10.25.2005
Rating: -4.50- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


Pamela Fusco, CSO, Merck & Co., presented this session at Information Security Decisions Fall 2005.


Compliance and regulatory mandates are moving businesses to implement key controls to make sure that they adhere to a wide range of national and international mandates – Sarbanes-Oxley, Gramm-Leach-Bliley, FISMA, HIPAA, California SB-1386, to name a few. In an effort to meet these requirements, enterprises must not only change business processes, but also implement security programs and tested controls designed to maintain and frequently (if not continuously) monitor their systems and activities. In short, a new relationship has forged between security and compliance.

How does compliance impact your role as a security practitioner? Few are in a better position to tell you than Pamela Fusco, who as chief security officer at pharmaceutical giant Merck & Co., implemented and executed on compliance initiates. In this presentation, Fusco shows you how her security department became involved in meeting regulatory demands. She reveals details and shares experiences on how she was able to enable her business to measurably improve security while satisfying compliance requirements, interact with business leaders, and implement automated and sustainable technologies and methodologies required to meet the evolving demands of business and compliance.

MORE INFORMATION

Visit our resource center for more tips and expert advice on regulatory compliance

View more presentations from some of the industry's foremost security practitioners

Learn more about Information Security Decisions

Find out how to put the key benefits of what Fusco achieved at Merck & Co. to work in your own organization as she covers five key areas associated with security's role in compliance:

  • Information classification
  • IT audits
  • User provisioning and accountability
  • Efficient and effective incident response
  • Security process management

Download this presentation


Rate this Tip
To rate tips, you must be a member of SearchSecurity.com.
Register now to start rating these tips. Log in if you are already a member.




BROWSE BY TAG
Compliance Counselor,   Security Audit, Compliance and Standards,   FISMA,   Gramm-Leach-Bliley Act (GLBA),   HIPAA,   Data Privacy and Protection,   Sarbanes-Oxley Act,   General,   Identity Theft and Data Security Breaches,   Enterprise Data Protection,   Infosec-Related Regs,   Compliance,   VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


<< PREVIOUS | NEXT >>: What to tell senior management about regulatory...
VIEW ALL IN THIS CATEGORY

RELATED CONTENT
Compliance Counselor
Identity lifecycle management for security and compliance
Interpreting 'risk' in the Massachusetts data protection law
FTC Red Flags Rules: How to create an identity theft prevention plan
Creating a HIPAA employee training program
Data protection tips for corporate compliance leaders
PCI DSS compliance requirements: Ensuring data integrity
Understanding PCI DSS compliance requirements for log management
Are 'strong authentication' methods strong enough for compliance?
Strategies for using technology to enable automated compliance
Common PCI questions: Web application firewalls or source code review?

FISMA
GAO report cites government weaknesses, data leakage
DHS fills National Cybersecurity Center post
Experts optimistic of Obama cybersecurity plan
WH cybersecurity plan needs private sector guidance
White House cybersecurity czar faces major hurdles
Feds should get private sector advice on cybersecurity
ICE Act would create White House cybersecurity post
Experts alarmed over U.S. electrical grid penetration
Group identifies top 20 security controls to thwart cyberattacks
FISMA compliance made easier with OpenFISMA
FISMA Research

Gramm-Leach-Bliley Act (GLBA)
Implement security and compliance in a risk management context
The road to compliance
IBM to boost security spending, push PCI DSS program
ISO 27001 could bridge the regulatory divide, expert says
Policies and regulatory compliance
Where hard drives go to die, or do they?
Compliance guide for managers: Lessons learned and best decisions
Become compliant -- without breaking the bank
Compliance Guide for Managers
Making sense of the maze
Gramm-Leach-Bliley Act (GLBA) Research

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
Federal Information Security Management Act  (SearchSecurity.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Research Solutions for Network Security, Access Control and Security Threats
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts