CHAPTER 4

Auditing Cybersecurity Programs

High-profile incursions against technology and defense firms, breaches of credit card information, thefts of personal data—all of these have increased the awareness of security issues among boards of directors, executives, and others charged with making their companies successful. Globally, regulations dealing with the protection of data and systems have proliferated, with Payment Card Industry (PCI) standards, the European Union General Data Protection Regulation (GDPR), Health Insurance Portability and Accountability Act (HIPAA), and other requirements forcing companies to improve their security posture or face penalties or fines. Defending firms against cyber attacks and ensuring compliance with ...

Get IT Auditing Using Controls to Protect Information Assets, Third Edition, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.