About RSS
Search for: in 
it wek leader
R E L A T E D   C O N T E N T
Jargon Buster

ADVERTISEMENT

IT Week Staff

Security is built on compliance

Data breaches are not the only things on CISOs' minds

IT Week, 31 Mar 2008
ADVERTISEMENT

The headlines in IT security over the past few months have all been centred on the importance of securing corporate data assets. But is the view from the ground any different from the one so often perceived by those outside of the IT industry? The presumption has often been that with the advent of perimeterless networks, and the sharing and storage of data by third parties, IT managers need to prioritise implementing identity and access management systems, and protecting the data itself.

So the recent assertion from IT security chiefs at certain high-profile UK organisations that their primary concern was actually ensuring compliance with regulations such as the Sarbanes-Oxley Act and Payment Card Industry (PCI) standards may come as a surprise.

This emphasis on regulations and legislation does not diminish the importance of data security,­ after all, PCI was created to ensure the secure processing and storage of credit card data. But despite the dramatic warnings spun out by data loss prevention and encryption vendors, the less attention-grabbing activities associated with compliance still dominate the budgets and to-do lists of IT security chiefs.

Given the importance of such activities, it may not be long before more UK organisations establish the role of chief compliance or risk officer to ensure this area has a dedicated owner outside of the IT department.


Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
RELATED ARTICLES
M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Easyjet
Infrastructure Engineer MAIN PURPOSE easyJet is a high availability, high throughput business that has total reliability on its IT systems. IT services are responsible for the end to end management and support of all IT ... more >
| Easyjet
Web Tester • Experience of working to Agile methodologies • Good knowledge of the Software Development Lifecycle • Strong communicator and good at building relationships with personnel • Good at problem solving and providing alternative ... more >
| Easyjet
Scrum Master Job Description:Are you an experienced, practicing Scrum Master? Are you passionate about Agile principles and keen to tell others of the benefits? Would you like to work in a fast moving, exciting environment ... more >
| Easyjet
Database Developer This role is responsible for the development of database integration and Business Intelligence (BI) solutions on the SQL2005/2008 platform reporting to the Data Team Leader. The overall objective is to implement the data ... more >
More job opportunities