Rules and Roles: Identity Management Control

2.11 Faced with aggressive expansion plans, People’s United Bank has moved from a decentralized, largely manual system of user access controls, to today’s centralized, automated provisioning and role management solution. more...

What's New

Compliance Webcasts

Assume You'll Be Hacked: Practical advice on curing confusion and common failures in PCI compliance

12.11-12.11As compliance ups the ante and hackers raise the stakes, companies need to move beyond security basics and find profound and sustainable ways to improve their data protection practices.

Prosecution Watch

  • 12.19 Mortgage firm faces $50,000 fine for throwing records into an unsecured dumpster more...
  • 12.19 Dutch regulators fine spyware distributors €1 MM more...
  • 12.17 Cops nab wireless extortionist more...
  • 12.17 Con men infiltrate Verizon data center to steal hardware more...

View All

IT Compliance Journal

IT Compliance Journal - Volume 2, Number 2 IT Compliance Journal - Volume 2, Number 2

This issue of the IT Compliance Journal takes aim at a perennial trouble spot for compliance practitioners--information security. Prominent info-sec standards (ISO 27001/27002 and NIST Special Publication 800-Series), symmetric key encryption, and even the security risks posed by auditors themselves are all evaluated from an information security and compliance perspective.
Current ITCi members can access the Journal by signing in. If you are not an ITCi member, please take a moment to register, launching your free membership and IT Compliance Journal subscription.

View All

Regulations Library

The ITCi Regulations Database, available only to ITCi Members, is a comprehensive online repository of regulations, including descriptions, IT-centric analysis of statutory impact, and key compliance dates.

Advanced Search

Featured White Papers

New White Paper - Meeting and Exceeding PCI 1.1 Compliance Today

Demonstrating compliance with PCI is about following best practices, which is in the enterprises' best interests as well as the consumers. This paper looks at ways of successfully addressing the various requirments of PCI DSS v1.1.