Archive for June, 2008

Connecting Compliance, Security and Business Goals

Did you know that the difficulty in scaling existing compliance such as Sarbanes Oxley, HIPPA, PCI DSS, and security management programs to meet new requirements is creating a resource crisis within many organizations. As a result, large enterprises are seeking ways to actively streamline their compliance activities, to operationalize their security management programs, and to […]

Popularity: 12% [?]

Sarbanes Oxley Compliance for SAP R/3 Resources

From a regulatory compliance perspective, IT teams have two responsibilities: support enterprise-wide compliance efforts and ensure that IT itself is compliant with internal and external regulations such as Sarbanes-Oxley (SOX), HIPAA, PCI DSS, FDA, etc. In other words, the IT and SAP teams support the compliance efforts across all departments in the company as well […]

Popularity: 13% [?]

Cost Avoidance versus Return on Investment, a SOX Security perspective

Security has been and will continue to be an overhead expense for all organizations, as are payroll and other administrative tasks that are required to keep an organization running. The question that seems to pop up every few months in the security industry is, What is the value of all the security work that takes […]

Popularity: 15% [?]

What is the difference between Regulations, Legislation, and Guidance

Different types of documentation serve different purposes. As the following list explains, some documentation is internally driven and some is externally driven. To prepare for the interview process for an information security position, you need to understand what types of internal security documentation the organization may have and what external security-related regulations the organization must […]

Popularity: 45% [?]

Do small public company need one year extension for SOX compliance?

Recently SEC Approves One-Year Extension for SOX 404(b) Compliance for Smaller Public Companies. This should be a good news since many of small public company find a difficulties comply to this standard.
The SEC announced that it has approved a one-year extension of the compliance date for smaller public companies to meet the Section 404(b) auditor […]

Popularity: 10% [?]