|
| You are not logged in. Access is limited. Login or see membership information. • Streetwise Security Zone | |
|
JOIN NOW and get your Free One-Year Membership
Daily Governance by GraffitiThe Hangouts (Forums) »» HELP! (Quick Q&A)» Risks in the News » Justifying Security » What People Think (Polls) » Who Has What (Sources) » Lessons Learned » Lies, Damn Lies and... » Explanations » Security in Handling Credit Cards » Vertical Industry Security » Honey Stick Lost and Found » SOHO Security » Suggestions For SWSZ » All Other Forums The Goods »» Flicks and Clips» Marketplace » Download Tools Selected Blog Links »» Scott Wright's Security Views» Michael Santarcangelo - The Security Catalyst » Rebecca Herold - Privacy and Security Awareness » The Honey Stick Project - Measuring Security Awareness » The Breach Blog - Recent Breaches With Editorial Comments The Side Streets »» Getting Started» Contact Us » Send Private Message » FAQ » Privacy Statement
|
| Digest: showing activity in non-member only areas for the last 1 daysCustomize your digest optionsStreetwise Security News
I'm sorry sir, but that's our (security) policy Originally posted - February 20, 2007 Read More » Scott WrightThe Streetwise Security Coach
Realtime Community | IT Compliance
CMS Gets Heat Over Not Actively Enforcing HIPAA To date the Centers for Medicare and Medicaid Services (CMS) has not actively pursued HIPAA Security Rule compliance. Instead they have depended upon complaints to drive their investigations. However, as this article nicely points out, depending upon patients and healthcare workers to complain about problems leaves MANY HIPAA non-compliance issues...including significant information security and privacy vulnerabilities...dangerously unknown...
Scott Wright's Security Views Sun, 26 Oct 2008 16:12:04 +0000
Don’t depend entirely on Microsoft updates to protect your system from Zero-Day attacks Zero-Day attacks are the name given to any type of action that exploits newly discovered security holes. Whether or not the vulnerability is publicly known, if an attacker exploits it before there is an update to fix the hole it’s a dangerous situation, because fixes aren’t available.Eventually, a fix will arrive, and it is important [...]
The Security Catalyst Fri, 14 Nov 2008 16:46:18 +0000
Electronic Information Retention Policy By Patrick RomeroThe exponential growth in electronic information and the costs managing it, particularly in litigation, has spurred renewed interest in electronic records management and document retention programs. A sound approach to developing an electronic records management and retention program would be to base it on a core principle that electronic records have value only [...]
|
|
|