 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IT Answers &#187; Security audits</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/itanswers/tag/security/security-audits/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/itanswers</link>
	<description></description>
	<lastBuildDate>Fri, 24 May 2013 17:54:18 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>How to tackle the security risk an IT administrator generates</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/how-to-tackle-the-security-risk-an-it-administrator-generates/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/how-to-tackle-the-security-risk-an-it-administrator-generates/#comments</comments>
		<pubDate>Wed, 11 May 2011 07:43:32 +0000</pubDate>
		<dc:creator>Nauthiz</dc:creator>
				<category><![CDATA[Administrative privileges]]></category>
		<category><![CDATA[Administrator]]></category>
		<category><![CDATA[IT administration]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Security audits]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Hello, im an auditor for global copany risks. One of the things that we look for is sepperation of functions. shortly said, you don&#8217;t want the same person creating your bill&#8217;s and be able to pay them (because he presents a serious security risk for commiting fraud.) Now what to do with an Domain Administrator [...]]]></description>
				<content:encoded><![CDATA[<p>Hello, im an auditor for global copany risks. One of the things that we look for is sepperation of functions. shortly said, you don&#8217;t want the same person creating your bill&#8217;s and be able to pay them (because he presents a serious security risk for commiting fraud.)</p>
<div></div>
<div>Now what to do with an Domain Administrator (IT department), he has access to all systems because of his job. Is theire some way to eliminate that risk?</div>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/how-to-tackle-the-security-risk-an-it-administrator-generates/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
		</item>
		<item>
		<title>Which auditing solution should be used for banking service?</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/which-auditing-solution-should-be-used-for-banking-service/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/which-auditing-solution-should-be-used-for-banking-service/#comments</comments>
		<pubDate>Fri, 06 Nov 2009 17:05:57 +0000</pubDate>
		<dc:creator>Linux - Ask the Expert</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Linux security]]></category>
		<category><![CDATA[Security audits]]></category>
		<category><![CDATA[Syslog]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[I&#8217;m working in a firm specialized in providing banking services. I&#8217;m working on a user control mechanism and as part of the mechanism I need an auditing solution. Here are the requirements I have for my system: Logging all the command that users enter and preferably storing them on a per user basis (for instance [...]]]></description>
				<content:encoded><![CDATA[<p>I&#8217;m working in a firm specialized in providing banking<br />
services. I&#8217;m working on a user control mechanism and as part of the mechanism<br />
I need an auditing solution. Here are the requirements I have for my system:<br/><br/></p>
<ol>
<li>Logging all the command that users enter and<br />
preferably storing them on a per user basis (for instance the command log for<br />
the user &#8220;navid&#8221; be stored as &#8220;navid.log&#8221;</li>
<li>The ability to search for incidents based on user,<br />
command or time.</li>
<li>Ability to generate reports on a weekly basis.</li>
</ol>
<p>I&#8217;ve looked into syslog, syslog-ng, ossec and open-audit<br />
but I&#8217;m really not sure which one to go with. <br/><br/></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/which-auditing-solution-should-be-used-for-banking-service/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Analyzing Security Audit Journal</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/analizing-security-audit-journal/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/analizing-security-audit-journal/#comments</comments>
		<pubDate>Thu, 22 Oct 2009 14:46:53 +0000</pubDate>
		<dc:creator>Fabypaumc</dc:creator>
				<category><![CDATA[AS/400 audit]]></category>
		<category><![CDATA[AS/400 journaling]]></category>
		<category><![CDATA[AS/400 security]]></category>
		<category><![CDATA[Security audits]]></category>
		<category><![CDATA[V5R4]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Hello, could you please tell me where can I find a book, guide or course about Tracking and Analizing Security Audit Journal on iSeries?  I have tried Appendix F on Security Guide but there are not all entries and it does not explain how to analize records in journal.  Thanks a lot]]></description>
				<content:encoded><![CDATA[<p>Hello, could you please tell me where can I find a book, guide or course about Tracking and Analizing Security Audit Journal on iSeries?  I have tried Appendix F on Security Guide but there are not all entries and it does not explain how to analize records in journal.  </p>
<p>Thanks a lot</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/analizing-security-audit-journal/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>unchecking the &#8216;password never expires&#8217;</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/unchecking-the-password-never-expires/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/unchecking-the-password-never-expires/#comments</comments>
		<pubDate>Fri, 28 Aug 2009 14:45:49 +0000</pubDate>
		<dc:creator>Jam</dc:creator>
				<category><![CDATA[Active Directory Users and Computers]]></category>
		<category><![CDATA[GPO]]></category>
		<category><![CDATA[Security audits]]></category>
		<category><![CDATA[Windows Server 2003]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Hi, I have a number of domain users in Windows 2003 Server Active Directory Users and Computers. I believe these users to have the &#8216;password never expires&#8217; check box ticked in their accounts. I do not know who or where their accounts reside, therefore, I would like to know how to obtain a list of [...]]]></description>
				<content:encoded><![CDATA[<p>Hi, I have a number of domain users in Windows 2003 Server Active Directory Users and Computers. I believe these users to have the &#8216;password never expires&#8217; check box ticked in their accounts. I do not know who or where their accounts reside, therefore, I would like to know how to obtain a list of these users in order to remove the tick and hence enable the expiration peroid. Unfortunatley the use of a GPO to enforce the policy has never been used. However, after locating and removing all those users with &#8216;password never expires&#8217; enabled I intend to use a GPO to prevent AD accounts from never expiring. I hope I&#8217;ve explained myself well. Thanks.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/unchecking-the-password-never-expires/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>How to do a security assessment in a hospital environment?</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/how-to-do-a-secirity-assessment-in-a-hospital-environment/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/how-to-do-a-secirity-assessment-in-a-hospital-environment/#comments</comments>
		<pubDate>Tue, 19 May 2009 09:47:25 +0000</pubDate>
		<dc:creator>19770809</dc:creator>
				<category><![CDATA[Risk management]]></category>
		<category><![CDATA[Security accessment]]></category>
		<category><![CDATA[Security audits]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Possible questions to ask to employee working in a hospital enironment when you are conducting security assessment?]]></description>
				<content:encoded><![CDATA[<p>Possible questions to ask to employee working in a hospital enironment when you are conducting security assessment?</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/how-to-do-a-secirity-assessment-in-a-hospital-environment/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Road to become a Security Auditor?</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/road-to-become-a-security-auditor/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/road-to-become-a-security-auditor/#comments</comments>
		<pubDate>Thu, 26 Mar 2009 08:22:34 +0000</pubDate>
		<dc:creator>Ind</dc:creator>
				<category><![CDATA[CCIE]]></category>
		<category><![CDATA[Certified Information Systems Auditor]]></category>
		<category><![CDATA[CISA]]></category>
		<category><![CDATA[Cisco Certified Internetwork Expert]]></category>
		<category><![CDATA[Information Security Management System]]></category>
		<category><![CDATA[ISMS]]></category>
		<category><![CDATA[IT careers]]></category>
		<category><![CDATA[Security auditing]]></category>
		<category><![CDATA[Security Auditor]]></category>
		<category><![CDATA[Security audits]]></category>
		<category><![CDATA[Security careers]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Question Edited by iloverevti99]]></description>
				<content:encoded><![CDATA[Question Edited by iloverevti99]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/road-to-become-a-security-auditor/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Checklists for Router, Firewall and Switch security</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/checklists-for-router-firewall-and-switch-security/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/checklists-for-router-firewall-and-switch-security/#comments</comments>
		<pubDate>Wed, 04 Mar 2009 06:03:01 +0000</pubDate>
		<dc:creator>ISMS</dc:creator>
				<category><![CDATA[Audit and compliance]]></category>
		<category><![CDATA[Auditing (compliance)]]></category>
		<category><![CDATA[Compliance checklist]]></category>
		<category><![CDATA[ISMS]]></category>
		<category><![CDATA[Security audits]]></category>
		<category><![CDATA[Security compliance]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[I have recently been shifted to Information security audit department. I need some checklists to check the security compliance for Router, Switch, and Firewall. Please provide me some checklists to audit the same.]]></description>
				<content:encoded><![CDATA[<p>I have recently been shifted to Information security audit department. I need some checklists to check the security compliance for Router, Switch, and Firewall. Please provide me some checklists to audit the same.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/checklists-for-router-firewall-and-switch-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Network Security refresher training</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/network-security-fresh-up-training/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/network-security-fresh-up-training/#comments</comments>
		<pubDate>Sun, 04 Jan 2009 20:12:02 +0000</pubDate>
		<dc:creator>Fwguyus</dc:creator>
				<category><![CDATA[IT training]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security audits]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Hello, I was wondering if anyone can refer me to a good and basically free online network auditing, testing, documentation resource available online. thank you.]]></description>
				<content:encoded><![CDATA[<p>Hello, </p>
<p>I was wondering if anyone can refer me to a good and basically free online network auditing, testing, documentation resource available online. thank you.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/network-security-fresh-up-training/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Can a company do an ISO 17799/27001 certification in-house?</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/can-a-company-do-an-iso-1779927001-certification-in-house/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/can-a-company-do-an-iso-1779927001-certification-in-house/#comments</comments>
		<pubDate>Tue, 25 Nov 2008 22:17:21 +0000</pubDate>
		<dc:creator>Security Channel ATE</dc:creator>
				<category><![CDATA[Information security]]></category>
		<category><![CDATA[Information Security Management System]]></category>
		<category><![CDATA[ISO 17799]]></category>
		<category><![CDATA[ISO 27001]]></category>
		<category><![CDATA[ISO/IEC 27001]]></category>
		<category><![CDATA[Security audits]]></category>
		<category><![CDATA[Security certifications]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[New Discussion Post by]]></description>
				<content:encoded><![CDATA[New Discussion Post by ]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/can-a-company-do-an-iso-1779927001-certification-in-house/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Audit</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/security-audit/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/security-audit/#comments</comments>
		<pubDate>Mon, 20 Oct 2008 21:04:25 +0000</pubDate>
		<dc:creator>HubeHube</dc:creator>
				<category><![CDATA[Audit and compliance]]></category>
		<category><![CDATA[Auditing]]></category>
		<category><![CDATA[Avaya]]></category>
		<category><![CDATA[IT audit]]></category>
		<category><![CDATA[Security audits]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[what form or procedeure would you use for a final security Audit after the Avaya system is installed?]]></description>
				<content:encoded><![CDATA[<p>what form or procedeure would you use for a final security Audit after the Avaya system is installed?</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/security-audit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached
Database Caching 3/26 queries in 0.035 seconds using memcached
Object Caching 956/1065 objects using memcached

Served from: itknowledgeexchange.techtarget.com @ 2013-05-24 21:04:32 -->