Audit

Shared Responsibility of Cloud Computing

The shared responsibility environment of Cloud computing is a scenario were both parties, the customer and the Cloud provider, have the responsibility for managing the IT environment. Customers have the responsibility to manage the guest Operating Systems including updates and Security, other associated application software as well as the configuration of any software security...
Read more »

Tags: , , , , , , , , , ,
Posted in Audit, Cloud Computing | No Comments »

Discovering IT Risks

The failure of an IT resource can damage the organization’s reputation or it can bring loss of revenue and stressful times for all employees, especially the IT staff handling the recovery of the failed resources. However, the outcome of a failure incident can wreak havoc in an IT department if the cause of the...
Read more »

Tags: , , , , ,
Posted in Audit, Security Governance | No Comments »

Cloud Update – AWS Achieves PCI DSS and ISO 27001

After the SAS 70 Type II certification and the so many customer requests, Amazon AWS finally achieves the PCI DSS Level 1 Compliance certification. This certificate carries stringent validation requirements and regular audits. Therefore, Amazon’s infrastructure, data centers and services and now scrutinized! The news would definitely catch the attention of businesses operating in...
Read more »

Tags: , , , ,
Posted in Audit, Cloud Computing | 1 Comment »

Securing the IT environment – sample IT security checklist

Securing the IT environment – sample IT security checklist

Securing the IT environment is not a task that is defined once and carried out for the life time of the environment but it is an ongoing process of adjustment (updating items) while executing routine checks.  Whether you are a senior executive or security officer in a large organization or an IT Manager in a...
Read more »

Tags: , , ,
Posted in Audit, Security Governance | No Comments »

Organizational IT Risks

Organizational IT Risks

Every organization, risk auditor or analyst, security pro or individual may come up with a different definition of IT risks. While all definitions would most probably fit in the IT risks universe, it is very important that there is a common understanding and terminology within an organization. In fact, we find structures or better...
Read more »

Tags: , , , , ,
Posted in Audit, Security Governance | No Comments »

Credit Card Processing & PCI

Nowadays, we participate in ecommerce activities on regular basis without appreciating what goes on in the background and how these services are monitored for security. In the following article, you will find brief overview of the main steps involved when performing online payments and how these services are regulated by the authorities. A customer...
Read more »

Tags: , , , , , , , , ,
Posted in Audit | No Comments »

Search IT Info Mag