• Implementation Strategies for Fulfilling and Maintaining IT Compliance
  • by Kevin Beaver
Log In and Download Chapter 1: Understanding the Real-World Issues Associated with IT Compliance
Log In and Download Chapter 2: The Costs of Compliance and Why It Doesn't Have to be So Expensive
Log In and Download Chapter 3: Simplifying and Automating to Reduce Information Systems Complexity
Log In and Download Chapter 4: Establishing a System of Network Visibility and Ongoing Maintenance
Log In and Download Complete Book (ZIP file)
Synopsis

Businesses are struggling more and more with the compliance requirements being pushed on them from every angle. The reality is that such regulations aren't going away. However, there’s a silver lining – IT compliance doesn’t have to be that difficult and once you've mastered compliance it can serve as a business enabler and competitive differentiator. In Implementation Strategies for Fulfilling and Maintaining IT Compliance, a practical guide on real-world issues related to IT compliance, the reader will find reasonable solutions for the professionals responsible for making things happen. It's great for anyone faced with implementing the standards mandated by regulations such as HIPAA, HITECH Act, GLBA, SOX, and PCI DSS. CIOs, compliance officers, IT directors and network administrators can all benefit from the anecdotal stories, down-to-earth strategies and sage advice for creating gaining and maintaining control of IT compliance so that it can enable rather than hinder the business moving forward.

Chapter Previews

Chapter 1: Understanding the Real-World Issues Associated with IT Compliance

Compliance is often thought of as a dirty word. Rightly so-businesses are struggling more and more with the compliance requirements being pushed on them from every angle. There are numerous state, federal, and international compliance regulations affecting businesses around the globe:

  • Payment Card Industry Data Security Standard (PCI DSS)
  • Sarbanes-Oxley Act (SOX)
  • Health Insurance Portability and Accountability Act (HIPAA)
  • Health Information Technology for Economic and Clinical Health (HITECH) Act
  • Gramm-Leach Bliley Act (GLBA)
  • US state breach notification laws
  • Canadian Personal Information Protection and Electronic Documents Act (PIPEDA)
  • European Union (EU) Data Protection Directive
  • Hong Kong's Personal Data (Privacy) Ordinance
  • Japan's Personal Information Protection Act (JPIPA)

Much to the chagrin of business leaders, these regulations aren't going away. The good news is that gaining and maintaining control of IT compliance doesn't have to be all that difficult. If done correctly, compliance can actually serve as a business enabler and help minimize information risks long term. The key is to understand what compliance is really about and how its many parts can be managed effectively throughout the business.

Log In and Download

Chapter 2: The Costs of Compliance and Why It Doesn't Have to be So Expensive

One of the greatest impediments to compliance is the perceived cost of doing things the right way. Business leaders struggle enough trying to justify the most basic of IT expenditures. Now some government bureaucrat or industry regulator is requiring that they spend even more money to become compliant with their rules. The question becomes: Where's the payoff? How are all of these compliance controls really going to serve the business long‐term? These are legitimate concerns indeed.

Remember
The short‐term goal is to be compliant and close the compliance gaps. The
long‐term goal is to minimize business risks.

Overhauling your IT systems isn't cheap—or free—but it certainly doesn't have to break the bank in the name of compliance. That is, if you approach the issue with the right mindset.

Log In and Download

Chapter 3: Simplifying and Automating to Reduce Information Systems Complexity

Simple is better. Indeed it is when you're trying to sort through the IT compliance maze and gain control of your information security program. In fact, the complexity of your information systems environment is a key factor in determining how successful you're going to be with your compliance initiatives and the amount of information risk your business faces. Furthermore, simple network or not, if you don't have some semblance of control and visibility, compliance will be a continual uphill battle-that is, an energy drain and money pit.

Remember
Complexity is the enemy of information security and compliance. Simple is better.

Simplifying your network, applications, and overall IT environment wherever possible and using the proper tools to ensure things are kept in check are essential.

Log In and Download

Chapter 4: Establishing a System of Network Visibility and Ongoing Maintenance

Snapshots in time showing reasonable compliance and security are relatively simple to achieve. It's the foresight and effort required to truly make your technologies and processes work together for long-term information risk management that sets the true IT and security leaders apart.

Being in a position where you're continually reacting to the things thrown at you in IT creates unnecessary work, headaches, and business risks. By establishing a solid system of processes and technologies, you'll have what it takes to manage your environment proactively. You'll not only be able to keep things in check but also be prepared to respond in meaningful ways to the incidents that do occur.

Log In and Download

SIGN UP FOR OUR NEWSLETTER!

Sign up for our Realtime Nexus newsletters and book alerts and discover when new books on your favorite IT topics are available!

SPONSOR A REALTIME BOOK

By sponsoring a book with Realtime Publishers, you will connect your technology company with thousands of IT professionals who need information on the technology topic of your choice. Realtime Publishers works with only the best authors in the IT field to produce expert-level publications that appeal to and educate the IT professional audience.

Visit sponsorships.realtimepublishers.com to learn more about our wide array of sponsorship and content marketing opportunities.

  • © 2013 Realtime Publishers
  • // Google Analytics Tracking