We're excited about the Information Assurance Management Summit scheduled for May 2 & 3, 2012. This event will mark the launching point of a new era, in which information assurance managers will unite and become one council, sharing one voice and experience. After this event everything as we know it will change. Leaders in the information assurance arena will have a forum in which to network, learn and share experience.
In a report released in the fall of 2011 by PwC, global executives are confident of the ability to secure information. The report was based on the annual security survey, in which 9,000 executives in over 130 countries participated. With 43 percent suggesting they were confident in their security defenses, even more offered they expected spending on information security to increase by their company. Notwithstanding the above, only about 13 percent had employed sufficient controls that PwC would consider adequate. This suggests that this limited group of organizations had an organizational security strategy, reviewed it for effectiveness, and knew the types of issues they had been victim to over the past year.
Read more...The topic of security awareness and training has recently been re-emphasized in an international incident involving the publicly posting of classified travel plans of President Obama, by an Air Traffic Controller in Japan on an internet blog, reports the New York Times.
. The article offers the flight plans for Air Force One which will be carrying the President on at trip to Asia were posted to share with friends.
In a similar, but very different incident, a prestigious hospital accidently posted data of some 20,000 emergency room patients which included patients names, diagnosis codes, account numbers, admission and discharge dates, and as well as billing charges.
Read more...
CIMA One of the age old debates in information assurance is how to address the volume of issues on your plate, tactically or strategically? While it is understood a combined approach should be embraced, click here to see an intellectual argument on this important topic.
Click on the image above to watch a short introductory video.
Through knowledge and experience, we have developed and shared with our clients and others in the community "DIRECTION" a structured methodology for IT Governance.
Using DIRECTION, we take you step-by-step through the process of:

Give us a call and discover the difference we can make.
One of the least managed risk to organizations today is found at the heart of its supply chain and the management or lack thereof. In today's business climate with parts of our business outsourced and many stringent sanctions from regulators; organizations need a greater focus on supply chain risk management.
Areas such as outsourced payroll, HRIS, IT Infrastructure and application development, and more need particular attention to assessing and managing risk on an on-going basis due to the sensitive information and access they provide to people outside of the organization's boundaries and control.
Supply Chain Risk Management is more than just reviewing your existing contracts and getting vendors on-board with protecting information, it's also about having knowledge at your finger tips to know what might be affecting your suppliers to deliver goods and services, as well as being able to protect your customer data in the future.
At CIMA, we have the expertise to help your organization assess your current supply chain risks, develop policies and standards to set organizational expectations, and leverage technology to manage this critical issue on a go forward basis. Through our strategic alliances, we can provide tools to not only manage risks in your supply chain, but also provide alerts to incidents around the globe that could affect business.