IT Governance, Risk, and Compliance:

Information Asset Protection


June 9, 2009  9:33 PM

Digital Rights Management – Part IV



Posted by: Robert Davis
DRM, IAP, Information Asset Protection, Information Security Governance, Intellectual Property Right, Internet, Internet Governance, IPR, ISG, Trust Management, WIPO, World Intellectual Property Organization, World Trade Organization, WTO

IPR protection requirements shape complex and challenging management issues. Audio and visual material protection is especially problematic due to the existence of the various known vulnerabilities, and...

June 5, 2009  8:40 PM

Digital Rights Management – Part III



Posted by: Robert Davis
DRM, IAP, Information Asset Protection, Information Security Governance, Intellectual Property Right, Internet, Internet Governance, IPR, ISG, Trust Management, WIPO, World Intellectual Property Organization, World Trade Organization, WTO

DRM software is generally considered an access control technology deployed to limit unauthorized usage. However, arguably, a technology cannot in principle, know what legal restrictions and rights apply in...


June 2, 2009  3:44 PM

Digital Rights Management – Part II



Posted by: Robert Davis
IAP, Information Asset Protection, Information Security Governance, Intellectual Property Right, Internet, Internet Governance, IPR, ISG, Trust Management, WIPO, World Intellectual Property Organization, World Trade Organization, WTO

Intellectual property protection has ushered in an era of technological solutions that attempt to prevent asserted rights infringement. Digital Rights Management (DRM) can be considered a response to legal requirements which criminalize the...


May 29, 2009  7:40 PM

Digital Rights Management – Part I



Posted by: Robert Davis
IAP, Information Asset Protection, Information Security Governance, Intellectual Property Right, Internet, Internet Governance, IPR, ISG, Trust Management

Intellectual property right (IPR) issues affect Information Security Governance as well as Internet Governance deployments through a direct impact on '


May 12, 2009  3:25 PM

Developing Objectives – Part IV



Posted by: Robert Davis
Accountability, Behavioral Management, Benchmarking, Goals, IAP, Information Asset Protection, Information Security Governance, Information Security Management, ISG, ISM, Management by Objectives, MBO, Planning Committee, Resource Allocation, Responsibility

MBO is a participative behavioral approach to managing employees. One of the primary MBO assumptions is that employees prefer to work hard once they are provided with employer expectations. Intuitively, sustaining accepted expectations...


May 7, 2009  11:14 PM

Developing Objectives – Part III



Posted by: Robert Davis
Accountability, Behavioral Management, Benchmarking, Goals, IAP, Information Asset Protection, Information Security Governance, Information Security Management, ISG, ISM, Management by Objectives, MBO, Planning Committee, Resource Allocation, Responsibility

A system for disseminating information security management objectives is considered fundamental to obtain employee commitment. One way to communicate entity-centric information security objectives is clear and concise policies. Information security...

Bookmark and Share     0 Comments     RSS Feed     Email a friend


May 4, 2009  6:32 PM

Developing Objectives – Part II



Posted by: Robert Davis
Accountability, Behavioral Management, Benchmarking, Goals, IAP, Information Asset Protection, Information Security Governance, Information Security Management, ISG, ISM, Management by Objectives, MBO, Planning Committee, Resource Allocation, Responsibility

Within behavioral management theory, entity leaders have alternative approaches available to accomplish information assets safeguarding objectives development -- including participative, consultative, free rein, and autocratic models....


March 31, 2009  9:36 PM

Control Assessments – Part IV



Posted by: Robert Davis
Assurance Services, Control Self-assessment, CSA, IAP, ICR, Illegal Acts, Information Asset Protection, Information Security Management, Internal Control Review, Irregularities

Arguably, data security is the most significant domain supporting information reliability. Entity oversight committees should monitor control activities for on-going relevance and effectiveness as well as responses to information security...


March 28, 2009  8:20 PM

Control Assessments – Part III



Posted by: Robert Davis
Assurance Services, Control Self-assessment, CSA, IAP, ICR, Illegal Acts, Information Asset Protection, Information Security Management, Internal Control Review, Irregularities

Information security managers should prepare for audits utilizing control self-assessments to verify compliance with laws, regulations, policies and procedures. It is always a sound idea to strategically plan annual control self-assessments....


March 24, 2009  7:11 PM

Control Assessments – Part II



Posted by: Robert Davis
Assurance Services, Control Self-assessment, CSA, IAP, ICR, Illegal Acts, Information Asset Protection, Information Security Management, Internal Control Review, Irregularities

Management needs to understand the status of the entity's IT systems to decide what safeguarding mechanisms should be deployed to meet business requirements. When IAP monitoring is built into the entity's operating activities, and process performance is reviewed on a real-time basis; control...


Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to: