Aligning Security Policies and Controls with Regulations

You have reviewed six major laws at a high level and their effects on security policies and controls. Depending on your organization, you may have hundreds of laws to deal with. So how do you cope? There are many factors you must consider to ensure security policies and controls align with regulations, such as the following:

  • Inventory—Make sure you have a solid inventory of hardware, software, and information. You need know to where the information is collected, stored, and processed.
  • Business requirements—Your business is ultimately accountable to regulators. Ensure the business understands the data-handling requirements of each regulation. Ensure that there is an acceptable use policy ...

Get Security Policies and Implementation Issues, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.