Главная
Study mode:
on
1
Intro
2
The obvious question
3
Does compliance equal security
4
PCI does not cure stupid
5
The year of the breach
6
Anthem
7
Breach Report
8
Data Breach Statistics
9
Breach Statistics
10
Achieving and Maintaining Compliance
11
PCI
12
TimeBased Requirements
13
PCI Breach Report
14
HIPAA
15
OCR pilot audits
16
Case Study 1
17
Case Study 2
18
Ram Scrapers
19
Recommendations
20
Program Development
21
NIF Security Framework
22
Awareness Training
23
Sensitive Data Control
24
Critical Security Controls
25
Develop a Compliance Management Program
Description:
Explore the relationship between compliance and security in this 53-minute conference talk from Central Ohio Infosec 2015. Delve into the question of whether compliance equals security, examining high-profile breaches like Anthem and analyzing data breach statistics. Learn about achieving and maintaining compliance with standards such as PCI and HIPAA, including time-based requirements and OCR pilot audits. Examine case studies and the threat of ram scrapers. Gain insights into developing a secure compliance program, covering aspects like the NIF Security Framework, awareness training, sensitive data control, and critical security controls. Discover recommendations for building an effective compliance management program that enhances overall security posture.

Compliance vs Security - How to Build a Secure Compliance Program

Add to list
0:00 / 0:00