BankInfoSecurity.com - Information Security News, Regulations, & Education

FFIEC Handbook

The Risks of

The Risks of 'Security by Compliance' - Interview with ISACA's John Pironti

Friday, January 2, 2009

Regulatory compliance is the backbone of a financial institution's information security program. But compliance alone isn't enough, says John Pironti of ISACA's Education Board, who advises institutions to take a risk-based, not a "checklist-based" approach to security.

Other Related Articles:

Training & Education


Forensics Defined
Computer forensics is the use of investigative techniques to provide digital evidence of an activity, generally in conjunction with a criminal investigation or civil litigation in cases that include:
Employee internet abuse
Unauthorized disclosure of corporate information;
Industrial...

Next Presentation: October 4, 2010 @ 3:30 PM (EDT)

Register

 

Interviews