|
ComplianceHome is one of the Web's largest library of resources for compliance management of HIPAA, SOX, FISMA, GLBA, FDA, COOP & COG, FFIEC, Basel II, OSHA and ISO 27002/17799. Visit our directories which are the best source on White papers, related news articles, resources on the web, training, webinars, conferences, rules & regulation overview, ask the expert, job and search on vendors, solutions & products. Thu, 09 Oct 2008 08:00:00 +0200 2008-10-23 WEBINAR - Madison Wisconsin
A significant threat in many organizations today is the inability to easily access the key risk assessment information necessary to make critical decisions in a timely manner. Join us online for a Webinar to learn how RiskOptix software can help. RiskOptix the multi-user system that provides an intuitive user-interface, multi-level security and powerful reporting to track and visualize changes to your risk universe over time. RiskOptix is a Web-based, multi-user solution providing one source that ensures an institution can more easily manage risk to the size and complexity of their institution using an industry accepted and proven methodology. RiskOptix provides an easy way to track and report on observations and their status for any bank exams, technical vulnerability assessments and internal and external audits (i.e. state, FDIC, OTS, OCC, GLBA, BSA, AML, SOX, FACTA, loan reviews and others). Thu, 09 Oct 2008 08:00:00 +0200 2008-10-14 Madison, WI
A significant threat in many organizations today is the inability to easily access the key risk assessment information necessary to make critical decisions in a timely manner. Join us online for a Webinar to learn how RiskOptix software can help. RiskOptix the multi-user system that provides an intuitive user-interface, multi-level security and powerful reporting to track and visualize changes to your risk universe over time. RiskOptix is a Web-based, multi-user solution providing one source that ensures an institution can more easily manage risk to the size and complexity of their institution using an industry accepted and proven methodology. RiskOptix provides an easy way to track and report on observations and their status for any bank exams, technical vulnerability assessments and internal and external audits (i.e. state, FDIC, OTS, OCC, GLBA, BSA, AML, SOX, FACTA, loan reviews and others). Thu, 09 Oct 2008 08:00:00 +0200 2008-10-14 Madison, WI
A significant threat in many organizations today is the inability to easily access the key risk assessment information necessary to make critical decisions in a timely manner. Join us online for a Webinar to learn how RiskOptix software can help. RiskOptix the multi-user system that provides an intuitive user-interface, multi-level security and powerful reporting to track and visualize changes to your risk universe over time. RiskOptix is a Web-based, multi-user solution providing one source that ensures an institution can more easily manage risk to the size and complexity of their institution using an industry accepted and proven methodology. RiskOptix provides an easy way to track and report on observations and their status for any bank exams, technical vulnerability assessments and internal and external audits (i.e. state, FDIC, OTS, OCC, GLBA, BSA, AML, SOX, FACTA, loan reviews and others). Thu, 09 Oct 2008 08:00:00 +0200 2008-10-23 None
AT&T's VP of Managed Hosting, Chris Costello, and IDC analyst, Melanie Posey, will discuss the pros and cons of consuming IT resources and network bandwidth as an on-demand service. Benefits include a scalable infrastructure, usage-based pricing and more freedom to focus on your business. But there are more important things to consider - like reliability, security and performance - before deciding if IT as a service is right for you. Thu, 09 Oct 2008 08:00:00 +0200 2008-10-22 None
Learn how to simplify database security and compliance without impacting performance or creating more work for your DBAs and security teams. During this educational Webcast co-sponsored by Guardium and BMC, youll learn how: * Dell's IT group replaced its homegrown scripts and native database auditing with Guardium's automated, cross-DBMS platform resulting in streamlined compliance and a significant reduction in auditing overhead. * Dell rapidly deployed Guardium to 300+ DBMS servers in 10 datacenters worldwide with plans to expand to 700+ additional servers in the next phase. * Guardium's real-time database security and monitoring technology gives you a single centralized solution for your entire DBMS infrastructure (Oracle, Microsoft, IBM DB2, Informix, Sybase, MySQL, Teradata), so you can: o Safeguard critical applications such as Oracle Financials, PeopleSoft and SAP. o Monitor Thu, 09 Oct 2008 08:00:00 +0200 2008-10-22 None
Learn how to simplify database security and compliance without impacting performance or creating more work for your DBAs and security teams. During this educational Webcast co-sponsored by Guardium and BMC, youll learn how: * Dell's IT group replaced its homegrown scripts and native database auditing with Guardium's automated, cross-DBMS platform resulting in streamlined compliance and a significant reduction in auditing overhead. * Dell rapidly deployed Guardium to 300+ DBMS servers in 10 datacenters worldwide with plans to expand to 700+ additional servers in the next phase. * Guardium's real-time database security and monitoring technology gives you a single centralized solution for your entire DBMS infrastructure (Oracle, Microsoft, IBM DB2, Informix, Sybase, MySQL, Teradata), so you can: o Safeguard critical applications such as Oracle Financials, PeopleSoft and SAP. o Monitor Thu, 09 Oct 2008 08:00:00 +0200 2008-10-15 None
Many organizations responsible for PCI compliance have stalled adoption of virtualization simply because they do not know if virtual servers are in scope for PCI compliance or how they would be audited. But increasingly, organizations are taking deliberate steps to stay PCI compliant while successfully rolling out virtualization across the infrastructure. This webcast includes insights on: * Best practice recommendations for PCI compliance in a virtualized world * How to achieve and maintain compliance for successful audits * How Tripwire provides comprehensive support for VMware ESX node and PCI policies, * Managing risk in virtual and physical environments Wed, 08 Oct 2008 08:00:00 +0200 2008-11-13 - 2008-11-14 Columbia, MD
Learn FISMA Certification & Accreditation concepts from top practitioners/authors in the field. This all new course is being run for the first time with current and up to date material. The emphasis of the course is on security Certification & Accreditation (C&A) concepts so that they can be applied to any security C&A methodology - NIST, DIACAP, NIACAP, or DCID 6/3. This course is not a comparison between the different C&A methodologies. Instead it teaches general concepts to create the broad knowledge base necessary in order to position your career for segue into any C&A project. Wed, 08 Oct 2008 08:00:00 +0200 2008-10-14 None
Sign up to listen in and discover: * What forces are driving the increase in facility codes of conduct * The five main types of industry interactions with physicians that the medical centers are restricting * Analysis of individual facility codes and the consequences of violating them * The practical impact of these codes on industry sales and marketing efforts * Four ways companies can ensure sales representatives are following the rules Wed, 08 Oct 2008 08:00:00 +0200 2008-10-30 None
The PCI compliance rules are a set of standards collectively issued by the payment card industry Data Security Council and are designed to make credit card uses consistent and secure. In this webinar, featured presenter Bob Russo, who serves as general manager of the PCI Security Standards Council and has more than 25 years of experience in the security software and payment card industries, will offer his insight and brief us on the updated version of the Data Security Standards. Technology implementation specialist Mike Hastie from Prolifics will share a number of best practices based on his significant experience helping organizations leverage their technology infrastructure Among the topics to be covered in this insightful webinar: * Changes and updates to v1.2 of the PCI Data Security Standards * Why and what SOA products are well suited for compliance * How to build and maintain a secure network Tue, 30 Sep 2008 08:00:00 +0200 2008-10-22 None
This complimentary seminar will teach you the basics of conducting a simple, but complete risk assessment. It will include the principles of doing risk assessments on systems, on business units and on entire organizations. You will learn: - How to assess your 3rd party technical service providers - How to value your customer data - How to view the ISO 27001, COBIT 4 & NIST 800-53. - How to produce a threat/vulnerability calculation, required by regulators Tue, 30 Sep 2008 08:00:00 +0200 2008-10-16 None
The Joint Commission evaluates and accredits more than 15,000 health care organizations and programs in the United States. An independent, not-for-profit organization, the Joint Commission is the nations predominant standards-setting and accrediting body in health care and recently released new standards related to the security of hospitals and healthcare organizations, including doing a mandatory Annual Risk Assessment, lobby and visitor management standards, and mandatory standards for infant protection. RiskWatch Hospital Security includes a program that automatically does the risk assessment according to the new Joint Commission standards, as well as the Environment of Care (EoC) standards, and AT THE SAME TIME, measures compliance with your entire security program. It walks you through the entire assessment, sends out automatic surveys, does all the analyses and writes the entire report for you, including all the graphics. Tue, 30 Sep 2008 08:00:00 +0200 2008-10-15 None
This complimentary seminar will teach you the basics of conducting a simple, but complete risk assessment, emphasizing the Red Flag requirement. . It will include the principles of doing risk assessments by system, by business unit or to meet GLBA, FFIEC, BSA-AML, OFAC or other bank requirements. You will learn: How to meet the Red Flag requirement - How to assess the risk to customer financial information - How to produce a threat/vulnerability calculation, required by regulators How to address Residual Risk. Fri, 26 Sep 2008 08:00:00 +0200 2008-10-22 None
Learn how to simplify database security and compliance - without impacting performance or creating more work for your DBAs and security teams. Register for this 45-minute Webcast to learn how to simplify database security and compliance - without impacting performance or creating more work for your DBAs and security teams. During this educational Webcast co-sponsored by Guardium and BMC, youll learn how: * Dells IT group replaced its homegrown scripts and native database auditing with Guardiums automated, cross-DBMS platform - resulting in streamlined compliance and a significant reduction in auditing overhead. * Dell rapidly deployed Guardium to 300+ DBMS servers - in 10 datacenters worldwide - with plans to expand to 700+ additional servers in the next phase. * Guardiums real-time database security and monitoring technology gives you a single centralized solution for your entire DBMS infrastructure (Ora Fri, 26 Sep 2008 08:00:00 +0200 2008-10-14 None
Overcome the challenges of accepting payment cards in SAP by integrating payment card authorization and settlement into SAP-enabled workflow. Maximize the benefits of integration through an SAP-certified On-Demand payment processing service from Paymetric. Why should you attend? * Get answers to your most pressing payment card acceptance questions * Watch how to manage and integrate payment card transactions in your SAP applications * See how to implement an SAP-integrated payment card acceptance solution without costly hardware or installation expenses * Learn how to reduce the cost of payment card acceptance by providing Level III detail to your processor Fri, 26 Sep 2008 08:00:00 +0200 2008-12-09 - 2008-12-10 New York City
The SC World Congress, presented by SC Magazine, is the conference and expo that information security professionals won't want to miss. Faced with the challenges of safeguarding their organizations' customer data and intellectual property, complying with a long list of regulatory demands, and staying abreast of new threats and even newer applications, these pros will find at the SC World Congress expert insight and advice they can use. Over two days of plenary sessions, targeted panels and an instructive expo floor, the SC World Congress features the actionable, inside information that IT security and corporate management needs to safeguard their company's critical assets from threats, such as malware, targeted attacks, careless -- or malicious -- employees, and even careless executives. At the SC World Congress, attendees from all the major verticals -- such as finance, health care, government, and more -- will gain in Fri, 26 Sep 2008 08:00:00 +0200 2008-10-27 - 2008-10-29 Hilton Fort Lauderdale Beach Resort, Fort Lauderdale, FL
The HCCA's Audit & Compliance Committee Conference, a critically important conference for the health care industry, is intended to give members of a non-profit health care organization's audit or compliance committee the tools they need to fulfill their fiduciary obligations in a manner consistent with applicable accounting standards and industry practices, relevant case law, the Organizational Sentencing Guidelines, and standards imposed by other entities and bodies. Fri, 26 Sep 2008 08:00:00 +0200 2008-10-27 - 2008-10-29 Hilton Fort Lauderdale Beach Resort, Fort Lauderdale, FL
The HCCA's Audit & Compliance Committee Conference, a critically important conference for the health care industry, is intended to give members of a non-profit health care organization's audit or compliance committee the tools they need to fulfill their fiduciary obligations in a manner consistent with applicable accounting standards and industry practices, relevant case law, the Organizational Sentencing Guidelines, and standards imposed by other entities and bodies. Mon, 22 Sep 2008 08:00:00 +0200 2008-10-15 None
Many organizations responsible for PCI compliance have stalled adoption of virtualization simply because they do not know if virtual servers are in scope for PCI compliance or how they would be audited. But increasingly, organizations are taking deliberate steps to stay PCI compliant while successfully rolling out virtualization across the infrastructure. This webcast includes insights on: * Best practice recommendations for PCI compliance in a virtualized world * How to achieve and maintain compliance for successful audits * How Tripwire provides comprehensive support for VMware ESX node and PCI policies, * Managing risk in virtual and physical environments Mon, 08 Sep 2008 08:00:00 +0200 2008-10-13 - 2008-10-16 None
Produced by Computerworld and co-owned by Computerworld and the Storage Networking Industry Association (SNIA), SNW is the largest and most proven educational forum for IT End-Users involved in storage networking, enterprise infrastructure and data management. Mon, 01 Sep 2008 08:00:00 +0200 2009-02-11 London
This Workshop provides a practical hands-on approach to the different mechanisms available to overcome the legal limitations affecting international data transfers. Attend this Workshop to identify the most appropriate solution to the challenges faced by your organisation and learn about the most cost-effective way to comply with the law. Mon, 01 Sep 2008 08:00:00 +0200 2008-10-22 London
This Workshop provides a practical hands-on approach to the different mechanisms available to overcome the legal limitations affecting international data transfers. Attend this Workshop to identify the most appropriate solution to the challenges faced by your organisation and learn about the most cost-effective way to comply with the law. Mon, 01 Sep 2008 08:00:00 +0200 2008-11-13 Dublin
Ireland's largest Data Protection Conference is a one-day event specifically designed to deliver the latest thinking in the rapidly expanding fields of data protection, data security and privacy. The keynote speaker is Billy Hawkes, the Data Protection Commissioner who will speak on The good practice guide: how to avoid being investigated by the Commissioner. Other topics include data sharing, dealing with data breaches, marketing, and training staff in data protection compliance. The Conference is produced in association with Data Protection Ireland journal and sponsored by Arthur Cox. Fri, 22 Aug 2008 08:00:00 +0200 2009-01-22 Grosvenor House; Park Lane, London W1K 7TN
Complinets 5th Compliance Awards ceremony will take place at Park Lanes prestigious Grosvenor House, January 22, 2009. Complinet is delighted to open this years nominations, which recognises the contribution of compliance trainers and professional advisers in helping to ensure that the UK remains at the forefront of global financial services. This event provides the opportunity for you to enjoy an evening of awards, comedy, good food and fine wine in the company of over 350 guests, including leading compliance colleagues, regulators and friends from related industries. Fri, 08 Aug 2008 08:00:00 +0200 2008-11-24 - 2008-11-27 Venue to be confirmed, Dubai, UAE
BASEL II compliance is becoming an increasingly high priority for many banks in the region as they strive to modernise their risk management approaches in line with the Central Bank's requirements and by the impending deadline of 2011. The need for more robust risk management practices has become even more apparent with examples in recent months of how badly a lapse in controls can damage a financial institution. Banks in the region are spending over US$ 5.7 million on Basel II implementation. Despite this substantial investment, many of the regional banks are faced with hurdles such as inadequate support from top management, lack of reliable and credible data and dealing with complex technical systems. In response to the market needs, Finance IQ is developing the BASEL II Compliance Forum, focusing on the practical application and benefits of BASEL II. The forum will feature world leading experts i Fri, 01 Aug 2008 08:00:00 +0200 2008-10-22 - 2008-10-24 Philadelphia, PA
Register now and you will: * Hear 9 key method validation characteristics * Learn the 5 analytical method validation pitfalls * Discover 15 critical points, from start to finish, for analytical method validation * Understand the regulatory expectations for analytical method validation protocols * Review the 6 key elements of an analytical method validation plan * Recognize 10 analytical method validation protocol key elements * Identify 16 items that must be documented in an analytical method validation summary report * Know the steps to take to ensure validation prerequisites such as analytical instrumentation qualification, operation qualification (OQ) and performance qualification (PQ), are identified and met. * Distinguish between requirements for qualification versus validation, know when a qualification is applicable and when a validation is requi Fri, 01 Aug 2008 08:00:00 +0200 2009-03-23 - 2009-03-25 London
The Sarbanes-Oxley Act (SOX) was enacted in July 2002, largely in response to large public failures of corporate governance. Securities and Exchange Commission's (SEC) rulings is that Internal Controls must assure the secure, stable, and reliable performance of computer hardware, software, and SOX personnel connected to financial systems. Fri, 01 Aug 2008 08:00:00 +0200 2008-11-24 - 2008-11-26 London
The Sarbanes-Oxley Act (SOX) was enacted in July 2002, largely in response to large public failures of corporate governance. Securities and Exchange Commission's (SEC) rulings is that Internal Controls must assure the secure, stable, and reliable performance of computer hardware, software, and SOX personnel connected to financial systems. Fri, 01 Aug 2008 08:00:00 +0200 2009-04-20 - 2009-04-22 London
This course follows closely the principles of sound practices of management and operational risk, as laid down by the Basel ii committee. Attendees will learn practical skills and solutions that will help them support the Basel ii requirements, whilst implementing the solutions and skills learned within their organisation. Thu, 24 Jul 2008 08:00:00 +0200 2008-10-30 New York
The New York Customer Summit is designed to maximise opportunity for delegates and speakers to interact with one another. Sessions are designed to be informative, practical with scope for questions or debate during or after each session. Delegates can explore and participate in thought-provoking presentations. This focused event offers compliance professionals specific knowledge and skills to use when serving clients Sat, 01 Dec 2007 07:00:00 +0100 2012-04-07 Columbus, OH
Join us at this exclusive event as we discuss best practices, processes and a customer case study surrounding the Ohio state compliance regulations and how Symantecs Control Compliance Suite can help your organization. |