17 Performing Security Analyses and Audits
DOI: 10.1201/b11355-17
I don’t think there’s a company, a management, an audit committee that hasn’t gone back and re-looked at what they’re doing. . . . People are really scrutinizing and (want to) really make sure their houses are in order and clean.
William Esrey
An information security audit is a formal process, performed by a qualified unbiased entity, that analyzes the current state of network security. More than just passively observing network characteristics and then checking off boxes to ensure certain technical measures and controls are in place, an audit should be an active process, offering solutions to current network issues. Auditors are not in the business of catching people failing ...
Get Asset Protection through Security Awareness now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.