Email Alerts
-
Compliance strategy 2.0: Comprehensive, scalable and sustainable systems
This expert e-book will help you prioritize compliance investments to reduce costs. Explore how companies are building a holistic approach to their compliance strategy, what strategies work and what technologies and practices you can leverage. E-Book
-
Risk management planning: Safeguarding against a world of threats
Access this expert e-book to discover all the different components to consider during the risk management planning process. Uncover the importance of accurate risk management metrics, and learn why governance, risk, and compliance are a unified frame... E-Book
-
How does shadow IT complicate regulatory compliance?
As shadow IT spreads, so, too, do the associated data privacy and security risks. In this FAQ, learn more about shadow IT and its compliance pitfalls. FAQ
-
FAQ: How does shadow IT complicate enterprise regulatory compliance?
As shadow IT spreads, so, too, do the associated data privacy and security risks. In this FAQ, learn more about shadow IT and its compliance pitfalls. FAQ
-
How do BYOD security concerns complicate compliance?
Bring-your-own-device programs provide many benefits and regulatory compliance concerns. Is your organization's BYOD security program prepared? FAQ
-
FAQ: How do BYOD security concerns complicate regulatory compliance?
Bring-your-own-device programs provide many benefits and regulatory compliance concerns. Is your organization's BYOD security program prepared? FAQ
-
FAQ: What is the current status of U.S. cybersecurity legislation?
After several failed cybersecurity legislation efforts, are U.S. lawmakers finally ready to create rules protecting the nation from cybercrime? FAQ
-
What is the status of U.S. cybersecurity legislation?
After several failed cybersecurity legislation efforts, are U.S. lawmakers finally ready to create rules protecting the nation from cybercrime? FAQ
-
FAQ: What is the COBIT framework's approach to IT management?
The COBIT framework has evolved into an organization-wide information management and GRC strategy tool. But can it also help boost the bottom line? guide
-
How does the COBIT framework approach IT management?
The COBIT framework has evolved into an organization-wide information management and GRC strategy tool. But can it also help boost the bottom line? FAQ
-
Have Knight Capital's trading errors swayed regulation?
After Knight Capital Group's faulty software severely disrupted the stock market, regulators are considering new requirements for similar IT systems. FAQ
-
How has the MF Global bankruptcy influenced regulation?
Details that point to the 2011 MF Global bankruptcy filing remain under federal investigation. Could the firm's collapse influence future financial regulations? FAQ
- See more Essential Knowledge on Risk management and compliance
-
MetricStream and CipherCloud announce new cloud security platforms
In this Product Spotlight, learn about two new security platforms from vendors CipherCloud and MetricStream. Product Spotlight | 16 May 2013
-
#Compliance: Proposal to update wiretapping laws draws controversy
Twitter was abuzz after a report of possible updates to wiretapping laws. Opponents argue it would dramatically alter civil rights and online privacy. News | 14 May 2013
-
#Compliance: Twitter buzzing about CISPA cybersecurity bill
Social media has been buzzing of late about the House passage of CISPA, as opponents argue the cybersecurity bill is a huge hit to consumer privacy. News | 22 Apr 2013
-
Product Spotlight: Global compliance services for mobile productivity
In this Product Spotlight, learn about two global compliance services created to boost mobile productivity and enforce compliance for on-the-go employees. Product Spotlight | 22 Apr 2013
-
Global economy forces companies to re-examine regulatory compliance
The global economy creates unique risks and regulatory compliance rules for multinational corporations, forcing them to re-examine GRC processes. News | 04 Apr 2013
-
Q&A: Communication, monitoring keys to corporate risk management
Ace Hardware Director of Risk Management William J. Montanez discusses the key aspects of, and obstacles to, a strategy for managing corporate risk. News | 01 Apr 2013
-
Obama, business leaders meet to discuss U.S. cybersecurity strategy
President Obama met with high-profile business leaders this week to discuss how the private sector can work together on U.S. cybersecurity strategy. News | 14 Mar 2013
-
ERM conference to offer latest in enterprise risk management strategy
Business risk remains a top concern, so organizers of an upcoming conference promise real-world examples and expert tips on cutting-edge ERM strategy. News | 24 Jan 2013
-
Product Spotlight: Mobile security software for enterprise devices
In our latest Product Spotlight, learn how new mobile security offerings from Commtouch and Citrix can protect today's enterprise devices. Product Spotlight | 18 Jan 2013
-
IT Priorities Survey: Compliance among top-ranked 2013 initiatives
Compliance strategy will continue to be hugely important to businesses in 2013, according to respondents to the TechTarget IT Priorities Survey. News | 21 Dec 2012
- See more News on Risk management and compliance
-
Mobile device management best practices for the connected organization
Mobile devices force reexamination of many data processes. In this tip, learn mobile device management best practices for the consumerized workplace. Tip
-
Experts: Base GRC strategy, technology on corporate framework
Every business has its own unique risks, environment and compliance rules, and all these aspects must be considered when developing GRC strategy. Tip
-
Incorporate ERM frameworks for cloud computing information security
Cloud computing information security is a big concern for many companies. Here are several readily available risk management frameworks that can help. Tip
-
When planning enterprise BYOD policy, beware employee privacy concerns
When implementing BYOD, employee privacy is often overlooked. Here's how to craft an enterprise BYOD policy that avoids potential legal complications. Tip
-
Information security and compliance in harmony with cloud deployment
The relationship between information security and compliance can be tenuous, but the cloud is forcing changes in how the two disciplines interact. Tip
-
Audits, maintenance crucial to business continuity policy success
IT-related disasters happen to even the best-prepared companies. Here's how to build a business continuity policy to keep processes running smoothly. Tip
-
Implement information governance policy to avoid data missteps
Managing company data is complicated for the modern organization. Here are some information governance policy must-haves to keep your data secure. Tip
-
Get a free IT or corporate compliance plan template for assessing risk
To adhere to regulatory guidelines, companies must develop strong compliance programs. These free IT and corporate compliance plan template examples can help. Tip
-
Vulnerability assessment vs. penetration test: Which is right for you?
Learn the differences between a vulnerability assessment and a penetration test and how to determine which is better for your IT compliance processes. Tip
-
Beware the perils of organization-wide compliance policy involvement
Kevin Beaver explains how input from myriad departments and staff -- all with selfish interests -- can negatively influence compliance policy. Tip
- See more Tips on Risk management and compliance
-
internal audit (IA)
An internal audit is an organizational initiative to monitor and analyze its own business operations in order to determine how well it conforms to a set of specific criteria. Definition
-
cloud computing security
Cloud computing security is the set of control-based technologies and policies designed to adhere to regulatory compliance rules and protect information, data applications and infrastructure associated with cloud computing use. Definition
-
Video Privacy Protection Act of 1988
The Video Privacy Protection Act of 1988 is United States legislation that prevents wrongful disclosure of an individual's personally identifiable information stemming from their rental or purchase of audiovisual material, including videotapes, DVDs ... Definition
-
mobile security (wireless security)
Mobile security is the protection of smartphones, tablets, laptops and other portable computing devices, and the networks they connect to, from threats and vulnerabilities associated with wireless computing. Mobile security is also known as wireless ... Definition
-
competitive intelligence (CI)
Competitive intelligence (CI) is the gathering of publicly-available information about an enterprise's competitors and the use of that information to gain a business advantage. Definition
-
NERC CIP (critical infrastructure protection)
The NERC CIP (critical infrastructure protection) plan is a set of requirements designed to secure assets vital to reliably operating North America's bulk electric system. Definition
-
Computer Fraud and Abuse Act (CFAA)
The Computer Fraud and Abuse Act (CFAA) of 1986 is United States legislation that made it a federal crime to access a protected computer without proper authorization. Definition
-
Occupational Safety and Health Administration (OSHA)
Occupational Safety and Health Administration (OSHA) is a federal organization (part of the Department of Labor) that ensures safe and healthy working conditions for Americans by enforcing standards and providing workplace safety training. Definition
-
data governance policy
A data governance policy is an organization’s set of information management processes that are designed to assist business administration and protect company assets. Definition
-
enterprise security governance
Enterprise security governance is a company's strategy to reduce risk by protecting systems and information, as well as its execution of that strategy. Definition
- See more Definitions on Risk management and compliance
-
Video: Information sharing vital to cybersecurity legislation
Former White House CIO Theresa Payton discusses how including information sharing incentives will be very important to U.S. cybersecurity legislation. Video
-
Video: Former White House CIO on the state of U.S. cybersecurity
In this video, former White House CIO Theresa Payton discusses U.S. cybersecurity and how the public sector can protect itself from cybercrime. Video
-
Video: Preparing mobility strategy for the new wave of connectivity
In this video, learn how a solid, proactive mobile strategy can help alleviate risks around BYOD -- and even improve productivity in the process. Video
-
Video: BYOD legal issues arise under data protection, privacy laws
In this video, learn how organizations should protect themselves from BYOD legal issues in the face of evolving data security and privacy laws. Video
-
Video: Constructing a 'normalized' corporate compliance program
In this video, learn how to build -- and maintain -- a sustainable corporate compliance program that keeps your business on the right side of the law. Video
-
Video: Cybersecurity strategy onus on users in dangerous online world
In this video, IT security expert Hord Tipton discusses how cybercriminals' new, sophisticated tactics should influence your cybersecurity strategy. Video
-
Compliance reporting forces risk management, security evolution
In this podcast, analyst Chris McClean discusses how increasingly complex compliance reporting requirements force closer scrutiny of risk management and security processes. Podcast
-
IT investments for manufacturers managing global supply chains
In this podcast, Jane Barrett of AMR Research Inc. discusses the best places for manufacturers to invest in IT to overcome challenges and maximize opportunities that globalization creates for supply chains. Podcast
-
Business model risk is a key part of your risk management strategy
Management consultants Amit Sen and John Vaughan discuss business model risk, a way to apply risk management policies to new or changed business processes. Podcast transcript
-
A closer look at computer forensics and e-discovery processes
This podcast defines both computer forensics and e-discovery processes and provides examples of how some CIOs are increasing awareness of these disciplines in the enterprise. Podcast
-
MetricStream and CipherCloud announce new cloud security platforms
In this Product Spotlight, learn about two new security platforms from vendors CipherCloud and MetricStream. Product Spotlight
-
#Compliance: Proposal to update wiretapping laws draws controversy
Twitter was abuzz after a report of possible updates to wiretapping laws. Opponents argue it would dramatically alter civil rights and online privacy. News
-
Mobile device management best practices for the connected organization
Mobile devices force reexamination of many data processes. In this tip, learn mobile device management best practices for the consumerized workplace. Tip
-
How does shadow IT complicate regulatory compliance?
As shadow IT spreads, so, too, do the associated data privacy and security risks. In this FAQ, learn more about shadow IT and its compliance pitfalls. FAQ
-
FAQ: How does shadow IT complicate enterprise regulatory compliance?
As shadow IT spreads, so, too, do the associated data privacy and security risks. In this FAQ, learn more about shadow IT and its compliance pitfalls. FAQ
-
Experts: Base GRC strategy, technology on corporate framework
Every business has its own unique risks, environment and compliance rules, and all these aspects must be considered when developing GRC strategy. Tip
-
#Compliance: Twitter buzzing about CISPA cybersecurity bill
Social media has been buzzing of late about the House passage of CISPA, as opponents argue the cybersecurity bill is a huge hit to consumer privacy. News
-
Product Spotlight: Global compliance services for mobile productivity
In this Product Spotlight, learn about two global compliance services created to boost mobile productivity and enforce compliance for on-the-go employees. Product Spotlight
-
Video: Information sharing vital to cybersecurity legislation
Former White House CIO Theresa Payton discusses how including information sharing incentives will be very important to U.S. cybersecurity legislation. Video
-
Global economy forces companies to re-examine regulatory compliance
The global economy creates unique risks and regulatory compliance rules for multinational corporations, forcing them to re-examine GRC processes. News
- See more All on Risk management and compliance
About Risk management and compliance
Risk management is an essential part of compliance planning. Find news, advice, commentary and best practices on coordinating your risk management initiatives with your compliance goals.