In a report released in the fall of 2011 by PwC, global executives are confident of the ability to secure information. The report was based on the annual security survey, in which 9,000 executives in over 130 countries participated. With 43 percent suggesting they were confident in their security defenses, even more offered they expected spending on information security to increase by their company. Notwithstanding the above, only about 13 percent had employed sufficient controls that PwC would consider adequate. This suggests that this limited group of organizations had an organizational security strategy, reviewed it for effectiveness, and knew the types of issues they had been victim to over the past year.
Read more...
Q1. What does CIMA stand for?
A1. CIMA stands for Center for Information Management and Assurance?
____________________
Q2. Where are you located?
A2. We are located in Miami, Florida in the United States of America.
____________________
Q3. Do you do work at client locations outside of South Florida?
A3. Yes we do. Each and every engagement is different, and clients may have offices in various states or in other countries.
____________________
Q4. How do you price consulting engagements?
A4. Pricing for our work varies from one engagement to the next. Some engagements may be negotiated on a fixed priced, while others are billed on a time and materials basis. Additionally, the seniority of the resource that is assigned to an engagement will also affect the cost of an engagement.
____________________
Q5. Do you offer fixed fee arrangements for ISO 27001 readiness assessments?
A5. Yes, we are able to offer fixed fee arrangements to perform an ISO 27001 assessment on your organization, based on a defined scope of work.
____________________
Q6. Are your employees and associates governed by a confidentiality and non-disclosure agreement to ensure information we share with you is kept confidential?
A6. Yes, no one is every placed on an engagement with a client without a confidentiality and non-disclosure agreement in place to protect CIMA and its customers.
CIMA is a South Florida-based information management and assurance consulting and services company serving the global community through strategic management consulting and facilitation services.
How to Contact Us
1111 Brickell Ave., Suite 1100
Miami, Florida 33131 USA
Local: +1 305-744-5447
Toll Free: +1 866-202-2023
Fax: +1 866-730-7295
We ensure our services meet a high standard.
We ascertain that new products and services translate to a strong value return for our customers.
We promote the need for, and acceptance of diversity in the industry.
We embrace and promote the accomplishments of associates and clients who are key contributors to the professional community.
We promote innovative thinking to meet objectives.
We are committed to a high standard of integrity in all our business affairs.
We work in a trusting and harmonious environment that perpetuates strong and positive working relationships with associates and customers alike.
We treat every situation with respect and courtesy to foster a positive working and customer experience.
The topic of security awareness and training has recently been re-emphasized in an international incident involving the publicly posting of classified travel plans of President Obama, by an Air Traffic Controller in Japan on an internet blog, reports the New York Times.
. The article offers the flight plans for Air Force One which will be carrying the President on at trip to Asia were posted to share with friends.
In a similar, but very different incident, a prestigious hospital accidently posted data of some 20,000 emergency room patients which included patients names, diagnosis codes, account numbers, admission and discharge dates, and as well as billing charges.
Read more...
CIMA One of the age old debates in information assurance is how to address the volume of issues on your plate, tactically or strategically? While it is understood a combined approach should be embraced, click here to see an intellectual argument on this important topic.
Click on the image above to watch a short introductory video.
Through knowledge and experience, we have developed and shared with our clients and others in the community "DIRECTION" a structured methodology for IT Governance.
Using DIRECTION, we take you step-by-step through the process of:

Give us a call and discover the difference we can make.
One of the least managed risk to organizations today is found at the heart of its supply chain and the management or lack thereof. In today's business climate with parts of our business outsourced and many stringent sanctions from regulators; organizations need a greater focus on supply chain risk management.
Areas such as outsourced payroll, HRIS, IT Infrastructure and application development, and more need particular attention to assessing and managing risk on an on-going basis due to the sensitive information and access they provide to people outside of the organization's boundaries and control.
Supply Chain Risk Management is more than just reviewing your existing contracts and getting vendors on-board with protecting information, it's also about having knowledge at your finger tips to know what might be affecting your suppliers to deliver goods and services, as well as being able to protect your customer data in the future.
At CIMA, we have the expertise to help your organization assess your current supply chain risks, develop policies and standards to set organizational expectations, and leverage technology to manage this critical issue on a go forward basis. Through our strategic alliances, we can provide tools to not only manage risks in your supply chain, but also provide alerts to incidents around the globe that could affect business.