Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security CISSP-Discussion
[Top] [All Lists]

[CISSP-D] CCC Notice 198/2006 - Idea Workouts; Antifraud; IT Audit; Secu

Subject: [CISSP-D] CCC Notice 198/2006 - Idea Workouts; Antifraud; IT Audit; Security Metrics; i.e. a little of everything today
Date: Fri, 11 Aug 2006 05:47:24 -0700 (PDT)
Project planning is about "getting in control" (whereas) project tracking is 
about "staying in control". - Neal Whitten. (Are your "key" projects in 
control? - hmmm)
   
  "Rather than focus on things and time, focus on preserving and enhancing 
relationships and accomplishing results" - Steven Covey. (Isn't that so true?) 
   
  "If you make the unconditional commitment to reach your most important goals, 
if the strength of your decision is sufficient, you will find the way and the 
power to achieve your goals.? ? Robert Conklin. (You CAN achieve anything you 
put your mind to)
  __________________________________________________
   
  1. Idea "Workout" Gym - Explore ideas by running your mouse 
  over the various images on this web page - WAY COOL.
   
  http://thinksmart.com/mission/workout/workout_gym.html
   
  2. No-Nonsense Advice for Successfull Projects (one of my "all time" 
favorites).
   
  http://www.nealwhittengroup.com/
   
  note - The Neal Whitten Group specializes in leading the advancement of 
project management and human resource development by way of products and 
services of speaking, training, ... 
   
  3. The August 10, 2006 issue of IT Audit is now available. 

   
  http://www.theiia.org/itaudit 
   
  4. AICPA Antifraud & Corporate Responsibility Center
   
  http://antifraud.aicpa.org/
   
  5. An excellent article on security metrics.

   
  http://www.csoonline.com/read/070105/metrics.html
   
  6. Something different - http://www.facilitatedcontrols.com/
   
    7. Meet the CRO
MSNBC - USA 
... has explained that to do right by Sarbanes-Oxley, companies should have 
corporate responsibility officers overseeing corporate compliance and ethics 
issues.
  http://msnbc.msn.com/id/14267284/

   
  8. Finally, for all those people having trouble sleeping at night and others 
who just want to study some more, my latest summary of some of my writings (is 
provided below).
   
  Enjoy.
   
  Dan
  ________________________________________________
      www.securitybenchmark.com
  http://finance.groups.yahoo.com/group/Dans_SECemails/
http://finance.groups.yahoo.com/group/Dans_CCCemails/
   
    NEW - What Should Your Business Continuity Efforts Focus On?
  http://www.itcinstitute.com/display.aspx?ID=2090

   
    NEW - Auditor Answers: Software for Expediting Regulatory Audits
http://www.itcinstitute.com/display.aspx?id=1953
   
  NEW - Measurement & Metrics Guide (MMG) - The Measurement and Metrics Guide 
(MMG) is designed primarily for chief compliance and chief ethics officers and 
will also help the directors, executives and other senior managers who charged 
with governance responsibilities. The MMG will help an organization understand 
the issues and processes involved to evaluate and report on the PERFORMANCE of 
a compliance and ethics program.  www.oceg.org
   
   
   
  Auditing a compliance and ethics program.   
http://www.oceg.org/downloads/AuditingEthicsAndCompliancePrograms.pdf

   
  Twenty Questions for Directors to Ask Internal Auditors - The IIA has a 
briefing 
  paper to help audit committees develop a better understanding of expectations.
  
www.complianceweek.com/index.cfm?fuseactionfiltered=article.viewArticle&article_ID=2530

   
  OCEG Practice Aid: Internal Audit Guide (IAG) - The OCEG Internal Audit Guide 
(IAG) will help directors, executives and other senior managers charged with 
governance responsibilities to better understand the issues and processes 
involved in an internal audit of a compliance and ethics program. The IAG is is 
designed primarily for the internal auditor, but it is also useful for 
compliance and ethics officers, compliance directors and board members. By 
applying the processes and practices contained in the IAG, an organization will 
enusre that they have an effective compliance and ethics program in place. 
www.oceg.org
   
  The Vital Need For Quality Internal Auditing
    
www.complianceweek.com/index.cfm?fuseactionfiltered=article.viewArticle&article_ID=2447

   
    
Achieving Operational Excellence (Tripwire Guide)
  http://www.tripwire.com/files/guide/prescriptive_guide.pdf
   
  Ask the Auditor: Who is Responsible for Information Security? 
  (Some thoughts and great resources) 
  www.itcinstitute.com/display.aspx?ID=1823
   
  Auditing Information Security
  infosecuritymag.techtarget.com/articles/october00/features3.shtml
   
  Auditing System Conversions
  www.theiia.org/ITAudit/index.cfm?act=itaudit.archive&fid=5495

   
  Ask the Auditor: Business Risk vs. Audit Risk
  http://www.itcinstitute.com/display.aspx?id=1673
  _________________________________________


                
---------------------------------
How low will we go? Check out Yahoo! Messenger?s low  PC-to-Phone call rates.
<Prev in Thread] Current Thread [Next in Thread>
  • [CISSP-D] CCC Notice 198/2006 - Idea Workouts; Antifraud; IT Audit; Security Metrics; i.e. a little of everything today, Dan Swanson <=