ISACA reveals COBIT security secrets at Gartner Summit

Printer-friendlyE-mail this news to a friendYour comment

Roger Southgate, from ISACA, an association serving more than 86,000 IT governance professionals from 160 countries - will deliver a workshop on the subject of COBIT and Val IT for the Security professional at the Gartner Security Summit in London this Wednesday. Given against the backdrop of regular data losses and breaches being reported in the media - Roger will reveal how COBIT (Control Objectives for Information and related Technology) can greatly improve information security for any size of organisation.

Roger Southgate, the immediate past President of the London Chapter of ISACA commented, "All the recent data loss catastrophes have their origins in people and process. The COBIT security baseline enables a focused holistic approach to the people, process and technology issues that organizations today have to face.”

Roger Southgate continued, "If organizations get their employees to consider the following key points from the COBIT security baseline user survival kit, people will make the connection between attention, understanding and appropriate action in order to achieve long term security”.

Top 6 tips from the User Security Survival kit are:

1. Obtain guidance from qualified and reputable advisors (certified technicians) from time to time to ensure that the computer installation has no significant security flaws.

2. If you depend on computers to do business, sign up for onsite support and ensure the availability of an on-call facility should anything go wrong.

3. Obtain reputable security software. Protection packages can be obtained from all PC software dealers that include all the main functions necessary, e.g., antivirus, spyware, firewall and content filtering. If needed, use a specialist to ensure proper installation.

4. Sign up for automatic updates and maintenance on the security software to ensure that the protection is current and up to date.

5. Do not open unknown e-mail attachments, and be aware that e-mail addresses can be faked. Let the security software check all e-mails and follow the advice given by the tool.

6. Install only official, up-to-date operating systems, security software and applications; avoid installing anything that is not needed.

With information and related systems becoming increasingly critical to organizations’ survival, the associated risks have grown in number and severity. The COBIT Security Baseline was developed to help minimize these risks. It identifies 44 security practices based on the COBIT 4.1 framework and offers guidance and tools to help computer users of all levels protect their systems.

Security Baseline features information security "survival kits” for six levels of computer users, from individuals who use computers to senior executives with responsibility for information security in the workplace. The kits contain essential questions to ask and checklists to complete to improve security and minimize risk.

"With the provisions of the Companies Act 2006 about to pass into law, corporate governance is poised to become top of the agenda at management board meetings across the UK, just as it did five and half years ago in the US when the Sarbanes-Oxley Act came into force. I plan to explain to attendees how COBIT can be used to benefit almost any public and private sector business," Southgate said.

For further details of Roger's presentation: http://agendabuilder.gartner.com/sec9i/WebPages/SessionList.aspx?Speaker=700196

30.09.2008, ISACA




Comments on this news 


Write your comment on this news

Subscribe to the newsletter

Never miss a story and stay informed with our newsletter.
Your email:  
RSS-Feed: All current newsOur News on your website

More current news

VASCO gives an answer to security concerns when deploying Software as a Service (SaaS)
Making penetration testing work
Double trouble, as new Facebook worm targets Google Reader
Wipro and Fortify Software Form Partnership to Assure the Security of Client Software Worldwide
VASCO launches PKI-based authentication solution

News on other topics

SharePartXXL has released Version 2.0 of the Taxonomy Extension for WSS/MOSS
RTL, VOX and SUPER RTL operate communication portals with CONTENS
Finally: A professional Open Source Digital Asset Management (DAM)
Pentland selects FirstSpirit for global web content management
ContentServ has successfully extended its International Partner Network in 2008

JOYclub.de
The Content Management PortalThe Document Management PortalThe IT Security PortalThe Customer Relationship Management PortalThe E-Commerce PortalThe Enterprise Resource Planning PortalPortal on VoIP and mobile communication The directory of Clinic IT SolutionsThe directory for IT professionals
homeimprintprivacy policycontactadvertising

know how

news

events

security alerts

Quick search




Current survey


Do you use antivirus software at your workplace?



Recommended reading


Understanding Digital Signatures