SOX, Lies and Security Matters
by Nick Lowe - Check Point - Monday, 8 September 2008.
Bookmark and Share
Exchange of sensitive data

It is vital to only exchange sensitive data over a trusted path or medium with controls to provide authenticity of context, proof of submission, proof of receipt and non-repudiation of origin. Solutions that deliver a high level of data security by providing strong, full-disk encryption for PCs and laptops as well as access control are certainly the best for this objective. They are able to ensure the secure exchange of sensitive data by ensuring the integrity and authenticity of data. Certain sensors also offer inline detection and alerting on defined data structures such as personal identification numbers, personal health information or files marked as confidential.

Performance assessment

COBIT advises periodically reviewing performance against targets, to analyse the cause of any deviations and initiate remedial action to address the underlying causes. It also suggests that companies should develop senior management reports on IT’s contribution to the business and solicit feedback from management. From this, organizations can identify and initiate remedial actions based on performance monitoring, assessment and reporting. It’s wise to find a solution to help with this, giving the company a holistic view of their security and network-activity trends. Consistent presentation of data across the business enables more effective data analysis and response.


Time to comply

SOX section 404 provides a turning point for most IT organizations in their efforts to develop, and document, the IT security controls and processes needed to support financial reporting. Protecting the integrity of information, and controlling access to resources, not only keep the company’s data safe but also fulfill compliance demands. The right security solutions can be leveraged to help fulfill many specific COBIT Control Objectives, to form the foundation for compliance with requirements set out in SOX Section 404. And with these in place, you and your Board can rest a little easier, assured that you have a compliant, robust infrastructure, from the perimeter to the endpoint.

Spotlight

A closer look at Mega cloud storage

Posted on 21 May 2013.  |  Once a novelty, nowadays many cloud storage services are fighting for their piece of the market in the virtual world. Mega offers 50GB of free space with great pricing on Pro accounts.


Daily digest

By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
  

Weekly newsletter

With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.
  

 
DON'T
MISS

Wed, May 22nd
    COPYRIGHT 1998-2013 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //