Tuesday, May 21, 2013
  • Resource Center
  • Support
  • Contact Us
  • Products
    • SpyLogix Enterprise
      1. SpyLogix Platform
      2. SpyLogix Modules
        • Active Directory
        • Windows Server
        • User Security
        • FIM 2010
        • CA IdentityMinder
        • CA SiteMinder
        • LDAP Directories
        • VMware vSphere
        • IBM System z and i
        • Module SDK
      3. SpyLogix Architecture
    • SpyLogix for Microsoft
      1. Active Directory
      2. Windows Server
      3. User Security
      4. FIM 2010
    • IDx Identity Assurance
      1. IDx Voice Self Service Password Reset
  • Solutions
    • SpyLogix Key Benefits
    • Cloud Solutions
    • IT GRC Solutions
    • Microsoft Solutions
    • Government Solutions
    • Identity Assurance Solutions
    • Information Security Solutions
    • 360° visibility for CA Technologies
  • Partners
    • Overview
    • System Integrators
    • Cloud Service Partners
    • Technology Partners
    • Become an IdentityLogix Partner
  • Services
    • Overview
    • Training
    • Support
  • News/Events
    • Events
    • Webinars
    • Press Releases
    • In The News
  • Company
    • About Us
    • Careers
    • Support
    • Contact Us
  • Blog
onthebeachblog3
Viewing entries tagged NISTIR 7756 Subscribe to feed
Michael Hlebasko

PCI Data Security Controls

by Michael Hlebasko
Michael Hlebasko
Michael focuses on maintaining IdentityLogix as an innovative software company o
User is currently offline
Thursday, 19 July 2012 Category PCI 0 Comments

When it comes to protected information security under PCI DSS, consistent purview over log data is the guidance. But it’s known that this objective is not as easy as it sounds. Organizations managing PCI data are supposed to review log data and periodically schedule an assessment to be completed by an outside party. However with today’s economy, and so much being asked of IT staff, I wonder if periodic review of sensitive data risk controls to comply with PCI DSS is adequate.
 

Continue Reading >>>

Tags: Continuous Monitoring, Audit, Remediate, Compliance, risk assessment, Report, PCI DSS, CAESARS, NISTIR 7756, PCI 1.2, PCI 2.0
Read More Hits: 16143
Rate this blog entry
1 vote
Steven Phipps

PCI 2.0 from PCI 1.2 Compliances Challenges to Organizations

by Steven Phipps
Steven Phipps
Vice President of Professional Services, 15 years of governance, risk, & compli
User is currently offline
Friday, 20 April 2012 Category PCI 0 Comments

Organizations must track and monitor all access to cardholder data and related network resources – in stores, regional offices, headquarters, and other remote access.

Yes, it is well documented that the three (3) tenets for adhering to PCI DSS 2.0 are as follows:

    1. Assess - Identifying cardholder data, taking an inventory of your IT assets and business processes for payment card processing, and analyzing them for vulnerabilities that could expose cardholder data.
    2. Remediate - Fixing vulnerabilities and not storing cardholder data unless you need it.
    3. Report - Compiling and submitting required remediation validation records (if applicable), and submitting compliance reports to the acquiring bank and card.
PCI DSS 2.0 Monitoring

Continue reading >>>

Tags: Continuous Monitoring, Audit, Remediate, Compliance, risk assessment, Report, PCI DSS, CAESARS, NISTIR 7756, PCI 1.2, PCI 2.0
Read More Hits: 25620
Rate this blog entry
7 votes
Steven Phipps

SmartGrid Breakaway Capability

by Steven Phipps
Steven Phipps
Vice President of Professional Services, 15 years of governance, risk, & compli
User is currently offline
Monday, 08 August 2011 Category IT GRC 0 Comments

Using NISTIR 7628 and NISTIR 7756

Tags: Energy, CCM, Continuous Control Monitoring, real-time, IT GRC, eGRC, GRC, risk assessment, NISTIR 7628, NISTIR 7756, Smart Grid
Read More Hits: 10621
Rate this blog entry
2 votes
Member Login

Categories

GRC
9 post(s)
IT GRC
2 post(s)
PCI
2 post(s)
Code
1 post(s)

Bloggers

Michael Hlebasko
Michael Hlebasko
1 post(s)
"Michael focuses on maintaining IdentityLogix as an..."
http://identitylogix.com
Gary Sheehan
Gary Sheehan
1 post(s)
"Gary is the Director of GRC Services for Advanced ..."
http://gsheehan@asmgi.com
Blaise Boscaccy
Blaise Boscaccy
1 post(s)
"IdentityLogix VP of Product Development"
Steven Phipps
Steven Phipps
11 post(s)
"Vice President of Professional Services, 15 years ..."

Join Us

Tag Cloud

PCI DSS Continuous Control Monitoring Energy NIST 800-53 CCM Utilities transmission CIP GRC DMS Regulatory .NET Compliance risk assessment zigbee distribution code C Sharp CAESARS C# OMS CBM IEC 61850 PCI 2.0 PCI AMI Monitor PDM M2C Smart Grid Smart Meter Asset Management AMI-HAN plugin AHM ISO 27002 MDMS Assess TOU Report NERC-CIP Audit NISTIR 7628 ISO38500 Remediate IT GRC PCI 1.2 real-time NISTIR 7756 Continuous Monitoring eGRC Smart Grid COBIT

Follow Us

Rate limit exceeded. Clients may not make more than 150 requests per hour.
  • Solutions
  • Products
  • Partners
  • News & Events
  • Company
  • Legal Notice
  • Privacy Policy
  • Contact Us
© Copyright 2010, IdentityLogix, All Rights Reserved.

Login

  • Forgot your password?
  • Forgot your username?