In a sea of compliance initiatives, database security is often overlooked. But experts say no matter what the regulations say, securing the database is a critical part of any compliance effort.. "What I've found in my experience is that the database is often the forgotten layer, even though it's the layer where the crown jewels -- the data -- usually resides," says Scott Laliberte, global leader of information security assessment services for Protiviti, which conducts third-party audit assessments for enterprises. But improving the security of the database as part of a larger compliance initiative is doable, experts say. The trick is to follow six steps toward database compliance. Let's take a look. The link for this article located at Dark Reading is no longer available. . 'What I've found in my experience is that the database is often the forgotten layer, even though it'. compliance, initiatives, database, security, often, overlooked, experts, matter. . LinuxSecurity.com Team
Guardian Digital, Inc., the world's premier provider of open source security solutions, today announced the launch of a new initiative aimed at helping companies assess their network-readiness in meeting Sarbanes-Oxley (SOX) legislation requirements. With the first deadline of November 15th fast approaching, Guardian Digital is seeking to raise awareness among corporate IT administrators as to the specific network security requirements of the Sarbanes-Oxley act through its "Compliance-Readiness Initiative." . . .. Guardian Digital, Inc., the world's premier provider of open source security solutions, today announced the launch of a new initiative aimed at helping companies assess their network-readiness in meeting Sarbanes-Oxley (SOX) legislation requirements. With the first deadline of November 15th fast approaching, Guardian Digital is seeking to raise awareness among corporate IT administrators as to the specific network security requirements of the Sarbanes-Oxley act through its "Compliance-Readiness Initiative." Although this first compliance deadline applies only to companies with market capitalization of more than $75 million, the second deadline of July 15, 2005 will be far-reaching, requiring compliance from all publicly traded firms, private companies with public debt in the United States, and qualifying foreign organizations. Necessitated by the rampant accounting scandals of the late 1990s, the Sarbanes-Oxley Act of 2002 establishes new standards of conduct regarding the maintenance and preservation of electronic and paper records as well as the behavior and accountability of corporate executives, auditors, and employees. In regard to IT departments specifically, the act requires changes to internal policies and procedures designed to promote greater levels of network security and ensure the integrity of all information contained on the network. Leveraging the merits of open source architecture and customized engineered security, Guardian Digital's operating platform, EnGarde Secure Linux, and itsaccompanying suite of applications provide the secure infrastructure companies need to be Sarbanes-Oxley compliant. The company's "Compliance-Readiness Initiative" will help network administrators better understand where their security vulnerabilities lie via a comprehensive assessment with a qualified Guardian Digital security engineer. The link for this article located at newsforge.com is no longer available. . Learn about Guardian Digital's efforts to bolster network safety protocols in accordance with Sarbanes-Oxley regulations, ensuring businesses meet compliance standards effectively.. Sarbanes-Oxley Compliance, Guardian Digital, Security Assessment, Open Source Solutions. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.