SEARCH RESULTS
 
Showing 1-5 of 5 records
1
 
Expand article

Ask the Auditor: Who is Responsible for Information Security?

2007-12-29 06:24:50 by Editor in Security Links
 
...managements responsibility to ensure their IT controls are operating properly. Resources Proactively studying whats new is a fundamental requirement for implementing and auditing information security effectively. Landmark guidance is issued every few years. These classics offer important knowledge relevant to all security stakeholders. The...
 
 
 
 
 
Expand article

Communicating about risk - part 1

The Article has images
2008-05-05 18:12:14 by JonesJ in RiskAnalys.is
...managements ability to prioritize effectively At the end of the day, effectively managing any complex set of issues requires an ability to differentiate. These qualifiers have proven to be extremely useful in that regard
 
 
 
 
 
Expand article

Appropriate funding

2008-05-13 12:24:49 by JonesJ in RiskAnalys.is
 
...managements perspective will likely be that youre paranoid and you lack perspective about the nature of running a business. Ive come to the conclusion that if I believe Im underfunded, then its likely I havent done a good job of communicating risk to the business I dont sufficiently understand the risk tolerance of the organizations...
 
 
 
 
 
Expand article

Communicating about risk - part 2

The Article has images
2008-05-20 16:22:24 by JonesJ in RiskAnalys.is
...managements risk tolerance was given their earlier decisions. This seemed to work okay, as I didnt experience much push-back from management, but you need to constantly look for evidence that the lines need to be changed Particularly in larger companies with multiple affiliates or subsidiaries, line placement will vary because each part of...
 
 
 
 
 
Expand article

What Are You Managing Towards? (And On Disproving Risk Management)

The Article has images
2008-06-03 14:41:11 by Alex in RiskAnalys.is
...managements arm to get them to cough up enough dough so that you can be as compliant as Large Accounting Firm says you need to be. Good on you But what I always wonder is, what happens when you want to manage something beyond compliance? What happens when the checklist youre managing towards is run by a bureaucracy that cant keep up with a...
 
 
 
 
 
 
Showing 1-5 of 5 records
1
 
TOP SEARCH
Expand / MinimizeClose Widget
  •  
RECENT SEARCH
Expand / Minimize
  •  
RELATED VIDEO
Expand / Minimize
SecurityRatty FAQ
Sergey Zarubin, 31yo
CISSP, CCSP
Moscow, Russia