Click on the slide!

Automate Your SOX Assessment

Live Webcast!             Join Chris Noell, EVP of Product Management at TruArx, as he shares his expertise on the top…

Click on the slide!

Social Media Compliance

On-Demand Webcast         Join Michael Rasmussen and Eric Young to learn how you can identify the risks of social networking with…

Click on the slide!

Go Beyond Checkbox Compliance

On-Demand Webcast       Learn how to improve security compliance by identifying areas of control weakness and focusing IT risk.

Click on the slide!

Enterprise Payment Security 2.0

On-Demand Webcast Payment Data: Don't Store It, Don't Handle It!                                   

Click on the slide!

Evolving Compliance Strategies

On-Demand Webcast      A Risk-Based Approach to PCI Compliance. Live Webcast with Stephen Walker and Jim Bibles.                                      

Click on the slide!

Harmonize Controls . .

. . and Reduce the Cost of Your Compliance. Join Brandon Dunlap as he moderates this discussion between Lumension's Brian Fish and Dorian Cougias of…

Click on the slide!

IT-GRC Best Practices

Listen to this panel discussion podcast moderated by Stephen Walker and featuring experts from CA, Aline and eFortresses.

Click on the slide!

Is E-Mail Evil?

On-Demand Webcast     Join Mark Diamond, Contoural, and Nate Fitzgerald, MX Logic. as they review the risks and costs of email, including…

Frontpage Slideshow (version 2.0.0) - Copyright © 2006-2008 by JoomlaWorks
E-mail

www.lumension.comGoing Beyond Checkbox Compliance: How to Make Compliance Improve Your Security

Recorded: June 4, 2010

In today's highly regulated environment, many organizations address compliance as one-off projects where the goal is to ‘get the box checked' by the auditor. This inefficient approach results in time- and resource-intensive work to pour through as many as 40,000 spreadsheets just for one compliance initiative* that provides little value back to the organization. This multiplies exponentially when dealing with multiple regulations. Achieving a level of compliance may be a requirement for your organization, but by itself is not a guarantee that your systems and sensitive data will be secure. Going beyond a checkbox compliance approach will ensure audits are passed and regulatory requirements are met, while streamlining operations, reducing IT risk and ultimately improving overall security.

In this roundtable discussion with Brandon Dunlap of BrightFly, Jeff Hughes of Lumension and Marcus Giese of RightNow, learn the keys to taking a risk-based approach and how to:

  • Leverage compliance initiatives as a catalyst to improving security
  • Identify areas of control weakness
  • Prioritize IT risk to focus on what matters most
  • Rapidly respond to those weaknesses
  • Improve processes and augment controls

* Corporate Integrity, LLC, Foundations of GRC: Streamlining Compliance, May 2009

Moderator: Brandon Dunlap.    Panelists: Jeff Hughes and Marcus Giese. 

Speaker BIOs

brandon_dunlopBrandon Dunlap is the Managing Director of research at Brightfly. He has more than 15 years of experience managing business technology risk in large and small organizations. He has served in a variety of roles across heavily regulated industries, successfully leading all aspects of IT security programs, including policy and procedure management, oversight and control, strategy, architecture, development, and training. Currently, he is the Managing Director of Research of Brightfly, an independent, advisory and research firm that focuses on building a collaborative IT practitioner communities and bridging the gaps within information technology, security, risk, compliance, and audit disciplines.

Jeff HughesJeff Hughes is the Director of Solutions Marketing at Lumension. Jeff brings over 18 years industry leadership and skills as a marketer, publisher and keynote speaker in high technology industries including Director of Solution Marketing for Lumension, Inc. Jeff is responsible for all aspects of outbound product marketing with an emphasis on compliance and IT risk management. Hughes is the author of 11 marketing and technology books and numerous trade press articles on high technology marketing topics.

Marcus GieseMarcus Giese, MS, JD, Regulatory Compliance. After spending 16 years with EDS (HP Enterprise Services), Marcus joined RightNow as a Compliance Specialist in January 2009. Marcus' technical and legal background, set him up well for handling regulatory compliance for a multi-tenant cloud vendor such as RightNow. Reporting to RightNow's CISO, Marcus coordinates RightNow's PCI DSS certifications, SAS 70 audits, and RightNow's compliance with a large number of compliance requirements such as HIPAA, FERPA, and GLBA.

 

Related White Papers

  • Don't Wave the White Flag Over Red Flags Rule Download
  • Six Critical Elements to Achieve Economies in NERC CIP Compliance Download
  • Practical Steps to Ensure GCSX Code of Connection Compliance and Beyond Download
 
Please register or login to add your comments to this article.



Related Items


.

.Featured Analysts


.
brandon_dunlop Brandon Dunlap Brandon Dunlap is the Managing Director of research at Brightfly. He has more than 15 years of experience managing business technology risk in large and small organizations. He has served in a variety of roles across heavily regulated industries, successfully leading all aspects of IT security programs, including pol...
 
mdiamond Mark Diamond Mark Diamond is the President and CEO, Contoural, Inc. He is one of the industry thought leaders in email archiving, litigation readiness, compliance, data protection and ILM strategies and practices. As CEO of Contoural, his company helps numerous Fortune 500 companies develop and execute email and document retention...
 
mikeras Michael Rasmussen Michael Rasmussen is the President of Corporate Integrity, LLC. He is the authority in understanding Governance, Risk, and Compliance (GRC).  He is a sought-after keynote speaker, author, and collaborator on GRC issues around the world and is noted for being the first analyst to define and model the GRC market for te...
 

More. . .

Banner
Banner
Banner

e-News




Microsites

Featured Solution

An Active Directory Tool builds on your organization's current IT infrastructure
Banner
Banner
Banner
Banner