Email Alerts
-
Standardization key to Credit Suisse information security governance framework
The CISO of financial giant Credit Suisse says the key to successful global security and risk management is a uniform governance system supported by a common policy framework. Article | 17 Sep 2010
-
Controls monitoring helps with governance, risk and compliance
Gartner says continuous controls monitoring for transactions is a GRC technology that promises to reduce compliance costs and improve financial governance. Article | 21 May 2009
-
An advancement in GRC
David Schneier says he found a product that takes governance, risk, and compliance (GRC) to a new level. News | 14 May 2009
-
Advocacy group looks to foster trust in foreign service providers
A formal agreement with two Indian technology organizations expands the reach of the BITS program, with the goal of fostering trust in the security controls of international service providers. Article | 23 Apr 2009
-
Metrics don't truly quantify information risk
Mike Rothman explains his point of view on why metrics programs need to evolve from trying to truly quantify information risk to something that actually works. Column | 16 Sep 2008
-
Guidelines for conducting a risk assessment
In this Q&A, security pro Mike Rothman offers advice on the best risk assessment procedures, and discusses whether or not ISO 17799 should be involved in the process. Interview | 10 Jan 2008
-
Creating a fraud risk assessment policy
In this Ask the Expert Q&A, our security management expert provides our member with a series of fraud risk assessment factors to address before a policy is created. Interview | 09 Jan 2008