Monday, June 27, 2011

Sarbanes Oxley - What does it have to do with IT Security?

I was looking into Sarbanes Oxley Act and its implication to IT Security.  I ran across this article by Mark Rasch.  He is a very good lawyer with a focus in IT security.  Anyway from his article, I think this is all you really need to know about SOX if you are as lazy as me:

"The thing to remember about SOX is that it is primarily focused on the accuracy of financial reporting data. IT security is important under SOX only to the extent that it enhances the reliability and integrity of that reporting."

Tuesday, June 14, 2011

What qualities make you a security leader?

I ran across this article today.  It outlines 10 qualities IT executives are looking for when hiring security leaders.  I agree with Greg Thompson.  A traditional security professional doesn't cut it anymore.  A business oriented security professional  is in demand ...

"
1. Results focus (i.e., a demonstrable track record of getting things done)
2. Passion
3. Operational experience in multiple IT disciplines
4. Commitment to continuous personal development
5. Self-awareness
6. Strategic thinking
7. Ability to lead change
8. Ability to strategically influence others
9. Communication skills
10. Strong personal ethics
"