Looking at a managed security service provider that can help with GLBA regulatory requirements
Greetings! I am a new IT Auditor and currently audits the BCP of a client. My client has no prioritization of which critical systems to be recovered in case of contingency/disaster. However, it has presented a list of priority systems that is currently addressed by its Problem Management policy....
I'd like to know what policies other companies have in place to protect personal data of employees, customers, etc.(data such as Social Security numbers, credit card numbers and the like) For example, is encryption required for transfer outside the company? How about inside the company? It is...
Encouraged by the helpful responses to the recent question about mailbox quotas I?d like to pose a related question: What size limits to you impose on inbound/outbound SMTP messages? BACKGROUND: We have 40,000+ email users in an Exchange network spanning 160+ locations around the world. Currently...
I am tasked to find the average mailbox size of a general Exchange end-user in a mid-size company that is equivalent to one that I work for: 700 to 800 employees with approx. 550 to 600 email accounts. We are trying to come up with a policy to ?encourage? people start cleaning out and deleting...
Hi All, I am an IT Security Administrator of my company. i need to audit more than 100 Windows servers for systems logs, event logs , anti virus server logs almost every month. I am looking out for automated tools that can help me make my work easier. A product with a good reporting tool will be...
I am attempting to install some documentation standards for the production control function here at work. Does anyone know of any template that could be utilized?
I know that information security decision makers and policy makers within the Federal government rely heavily on standards such as FIPS certification from the National Institute of Standards and Technology (NIST). How much weight is there placed on a product or service that has met certification...
Hey everyone, I'm an assistant editor for SearchDataCenter, and was curious what our users think of the Info Center we have on compliance. Has anybody checked it out? Is it useful? Any suggestions? Are there any topics you'd like to see more coverage on? If you haven't seen it, here's a...
According to articles in today's Washington Post and Wall Street Journal, Congress is considering legislation to ban the sale of Social Security Numbers for commercial purposes, unless individuals give their permission. The Post article went on to opine that there appears to be a growing...
If it turns out, as I believe, that enemies of the United States are behind a lot of the major ID thefts in the US, that would mean that a lot of money is going to our enemies. Can we therefore surmise that those who mishandle our identity information, by means of their poor stewardship of our...
Hi, Can anyone point me in the direction of an up-to-date summary [in layman's terms] of this act? Thanks in advance


