White Papers
The Simple Information Security Audit Process: SISAP
Category: Security
Overview The SISAP (Simple Information Security Audit Process) is a dynamic security audit methodology fully compliant with the ISO 17799 and BS 7799.2, and conformant with the ISO 14508 in terms of its functionality guidelines. The SISAP employs a simulation-based rule base generator that balances risks and business value generation capabilities using the Plan-Do-Check-Act cycle imposed in BS 7799.2. The SISAP employs a concept proof approach based on 10 information security best practices investigation sections, 36 information security objectives, and 127 information security requirements, as specified in the ISO 17799. The auditor may apply, for collecting, analyzing, and fusing audit evidence obtained at various audit steps, selected analytical models like certainty factors, probabilities, fuzzy sets, and basic belief assignments.
- Publisher
- Pace University
- File Format
- Date Published
- May 13, 2008
- Format
- White Papers
- Topics
- Security Standards, Best Practices, Security Management
Similiar White Papers
Demystifying the PCI Data Security Standard for Merchants
The Payment Card Industry Data Security Standard (PCI DSS) is a set of security practices set forth by American Express,
Publisher: ComplyGuard Networks | Tags: data, data security, pci, pci dss
Take a holistic approach to business-driven security
Corporate leaders face multiple challenges including the need to address complience measures and protection against exte
Publisher: IBM
Gartner Report: Magic Quadrant for Secure Web Gateway, 2007
Interested in what analyst firm Gartner has to say about Blue Coat Secure Web Gateway solutions? Read its "Magic Quadra
Publisher: Blue Coat Systems | Tags: pcs
Social Networking: Brave New World or Revolution from Hell? A look at the phenomenon of Social Networking and the implications for Businesses
According to recent surveys, employee social networking is growing rapidly, on hot sites such as Facebook, LinkedIn and
Publisher: MessageLabs, now part of Symantec | Tags: enterprise security, social networking
Effective Security with a Continuous Approach to ISO 27001 Compliance
The Tripwire Enterprise solution provides organizations with powerful configuration control through its configuration as
Publisher: Tripwire
Featured white papers
-
The Value of Location Intelligence in the Communications Industry
Public Services are under pressure, the challenge is to do more with less. How do you improve citizen satisfaction, increase cost efficiencies and improve service delivery? The power of location intelligence is helping many local authorities...
-
Best Practices for Translating Customer Satisfaction into Revenue
Today's support organisations are focused on two top-level metrics: financial results and customer satisfaction. For most, it's easy to track financial performance, but customer satisfaction is akin to speaking a foreign language...
-
HP print solutions and 3M
The objective for 3M was to optimize office printing infrastructure at 3M locations worldwide, reduce total cost and environmental footprint. Some of the business benefits acheived by switching to HP print solutions...
-
Check out these top business apps for your iPhone
-
Inside a Microsoft datacentre
-
Green IT without losing your edge
-
Peter Cochrane's latest video blog
-
What you need to know about Windows 7