Top Six US Regulatory Compliances that affecting information security and controls
Top Six US Regularatory that impact information security and controls, yup it excludes Sarbanes Oxley Sec 404
1. U.S. Health Insurance and Portability and Accountability Act (HIPAA)—U.S. standards on management of health-care data
2. Basel Accord Standard II—European banking requirements
3. U.S. Federal Information Security Management Act (FISMA)—Security standards for U.S. government systems
4. Committee for Sponsoring Organizations of the Treadway Commission (COSO)—A private industry initiative to identify factors that lead to fraudulent financial reporting and to be used as a voluntary internal framework of controls
5. U.S. Supervisory Controls and Data Acquisition (SCADA)—Enhanced security for automated control systems
6. U.S. Fair and Accurate Credit Transaction ACT of 2003 (FACTA)—Legislation to reduce fraud and identity theft
Popularity: 4% [?]











This isn’t too surprising. SOX404 is only a small portion of the SOX regulation that everyone complains about. As an entire company, I would expect to see SOX on the list. Luckily for us IT folk, a lot of the good data management software can help solve or at least address multiple regulation and compliance problems.
Comment by Travis Smith — January 9, 2009 @ 12:25 am