« February 2006 | Main | May 2006 »

Posts from April 2006

April 28, 2006

Information Security Governance

The IT Governance Institute (ITGI - www.itgi.org) has published a short paper on information security governance for top management titled, "Information Security Governance: Guidance for Boards of Directors and Executive Management 2nd Edition".

The PDF document can be downloaded by clicking here.

ITGI provides the following summary of the document:

"With increased networking and a growing realization of how valuable information assets are, information security is recognized as one of the most important issues to address for all IT users. However, the subject of IT security is often presented in high-tech terms, and managers find it difficult to understand the issues and feel confident about how their organizations are managing security-related risks. Information Security Governance helps overcome these barriers by explaining information security in business terms and comes complete with tools and techniques to help managers uncover security-related problems."

Jaime

April 27, 2006

Regulatory Compliance in the Enterprise

Regulatory compliance should be a process not an end goal for businesses.  Today, ever increasing government and industry groups are forcing senior executives and companies to give serious consideration to regulatory compliance as a core business process. 

I recently came across an excellent executive resource from the IT Compliance Institute (ITCi).  ITCi's Unified Compliance Project (UCP). 

Included in the UCP website (http://www.itcinstitute.com/ucp) is a "Custom IT Impact Matrix" tool that provides a customized report of specific regulatory requirements and their implications for IT controls within any organization.

For more details visit: http://www.itcinstitute.com/ucp

If you would like to share more executive resources with readers of this blog, please submit your comments and suggestions.  Thanks in advance for your collaboration.

Jaime

April 04, 2006

My PGP Key - RSA Format

Dear Readers,

Below is my *preferred* PGP key for those who may wish to communicate with me in a secure manner via email.

Click here: Download jaime_chanaga_cso_rsa.asc

Sincerely,

Jaime

My PGP Key - DH/DSS Format

Dear Readers,

Below is my legacy format PGP key for those who may wish to communicate with me in a secure manner via email.

Click here:  Download jaime_chanaga_cso_dss.asc

Sincerely,

Jaime