Home > Security Tips > Compliance Counselor > Define security's role in the regulatory process
Security Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

COMPLIANCE COUNSELOR

Define security's role in the regulatory process


Robert Childs
10.26.2005
Rating: -3.67- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


Robert Childs, Vice President and Information Security Officer, First State Bank of New Mexico, presented this session at Information Security Decisions Fall 2005.


Companies are looking to security managers to take a leadership role in regulatory compliance. Some 70% of security managers are spending more time on compliance-related activities in 2005 compared to 2004, according to a recent Information Security survey. This presentation shows you how to meet these new regulatory challenges. Based on his experience with successfully passing a Sarbanes-Oxley audit and meeting other compliance requirements, presenter Robert Childs of



fers practical ways that security can directly affect the success of regulatory efforts. He offers advice on how to adjust one's perspective to think like an auditor and view compliance requirements from a process standpoint.

Attend and learn:

  • The role security staff plays in meeting SOX audit requirements
  • Why meeting compliance requirements is all about ongoing processes – not point or technical solutions
  • How to maintain SOX compliance in the face of business challenges such as mergers/acquisitions
  • How to be more effective and proactive with your auditors

    Download this presentation


    Rate this Tip
    To rate tips, you must be a member of SearchSecurity.com.
    Register now to start rating these tips. Log in if you are already a member.




    BROWSE BY TAG
    Compliance Counselor,   Security Audit, Compliance and Standards,   Sarbanes-Oxley Act,   Sarbanes-Oxley Act,   Infosec-Related Regs,   Compliance,   General,   VIEW ALL TAGS

    Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


    RELATED CONTENT
    Compliance Counselor
    Common PCI questions: Web application firewalls or source code review?
    PCI management: The case for Web application firewalls
    The basics of enterprise GRC project management
    PCI DSS: The structure of a standard
    How to choose between source code reviews or Web application firewalls
    HIPAA compliance: New regulations change the game
    Data security best practices for PCI DSS compliance
    Key elements of a HIPAA compliance checklist
    A preview of PCI virtualization specifications
    Strategies for email archiving and meeting compliance regulations

    Sarbanes-Oxley Act
    Ex-SEC chief Pitt decries state of Sarbanes-Oxley, risk management
    Information security book excerpts and reviews
    Internal audits for Sarbanes Oxley and internal IT support
    Internal auditors and CISOs mitigate similar risks
    Implement security and compliance in a risk management context
    Does password sharing in international branches violate SOX?
    Consensus Controls project aims to set benchmarks for compliance
    Security visualization helps make log files work
    The Little Black Book of Computer Security, 2nd Edition
    RSA attendees see data classification, rights management projects stumble
    Sarbanes-Oxley Act Research

    Sarbanes-Oxley Act
    Defining adequate security controls
    Ongoing SOX compliance: A security team's to-do list
    SOX Compliance for the Security Practitioner
    CSO INTERVIEW: Regulatory pain is a two-way street
    SOX 404 compliance: Efficiency is key
    Outfox SOX: How to make regulations work for you
    Security compliance - Separating FUD from reality, part one: Sarbanes-Oxley
    The real deal with Sarbanes-Oxley: Perspectives for the security manager

    RELATED RESOURCES
    2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
    Search Bitpipe.com for the latest white papers and business webcasts
    Whatis.com, the online computer dictionary

    DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



  • Research Solutions for Network Security, Access Control and Security Threats
    More Security Resources for Resellers, VARs and OEMs
    TechTarget Security Media
    Information Security View this month\\'s issue and subscribe today.
    Information Security Decisions Apply online for free conference admission.
    SearchSecurity.com
    HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

    About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
    TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

    TechTarget Corporate Web Site  |  Media Kits  |  Site Map




    All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
      TechTarget - The IT Media ROI Experts