SlideShare a Scribd company logo
1 of 58
Why We Are Here
What compliance and governance is and why you
should care
Distinguishing Myth from Reality
Going Beyond “Just Good Enough” Approaches
Introduction to Compliance Frameworks
Balancing Competing Frameworks: Apples & Oranges?
Implementing Compliance Frameworks
E-Mail Management Issues to Be Addressed
On-Line resources
What do you need to take home?
Why Are We Here?
We don’t want to be…
We want to know how far it is to the hole…
Disclaimers
Compliance is Everywhere


      At last count, there are at
        least 200 international
      regulatory & legal drivers
     that must be complied with
     as tracked by IBM Business
         Consulting Services
Compliance is Everywhere


Sarbanes-Oxley FTC
      SEC rule 17a-4 Patriot Act
European Union Privacy Laws
  California Security Breach Notice Law
                                        FDA
BASEL II FMFIA                           HIPAA
 Financial Services Modernization    FISMAV)
 Act of 1999 (GLBA, Gramm-Leach-Bliley Act, Title
Compliance is Everywhere
And it makes C-Level executives and and their
employees want to just…
Compliance is Everywhere
Corporate Governance is not an option…




            Resistance is not only futile…
Compliance is Everywhere
…but can take you from this…
Compliance is Everywhere
…to this
Terms and Definitions
Elements of Governance
Elements of Governance
Information technology is so
embedded in the operations of an
    enterprise that strong IT
Governance is needed to support
corporate governance objectives
 and compliance requirements.
Business Goals, objectives and
specific requirements drive IT, not
       the other way around
COBIT Copyright The Information Technology Governance Institute, All rights reserved. Used with permission
(IT Strategy and Policy)
                          Requirements
                                                           Direction




                                             Control
            Goals                                                            Responsibilities
                                            Objectives

        Business                                                                  Governance

                         Business Needs to                Information (IT
                        Achieve Its Objectives           Control, Risk and
                                                            Assurance)


                                    IT Governance
COBIT Copyright The Information Technology Governance Institute, All rights reserved. Used with permission
IT Resources                                  Information
•   Data                                               •   Effectiveness
•   Application Systems                                •   Efficiency
•   Technology                                         •   Confidentiality
•   Facilities                                         •   Integrity
•   People                                             •   Availability
                                                       •   Compliance
                                                       •   Reliability
                                                                                        Plan and Organise

                                     Monitor And
                                      Evaluate
                                                                Acquire and Implement


                                                    Deliver and
                                                     Support




    COBIT Copyright The Information Technology Governance Institute, All rights reserved. Used with permission
PO7 manage human resources
                                                                                      PO8 ensure compliance with external requirements
                                                                                      PO9 assess risks
              IT Resources                                  Information               PO10 manage projects
                                                                                      PO11 manage quality

         •   Data                                               •   Effectiveness
         •   Application Systems                                •   Efficiency
         •   Technology                                         •   Confidentiality
         •   Facilities                                         •   Integrity
         •   People                                             •   Availability
                                                                •   Compliance
                                                                •   Reliability
                                                                                                 Plan and Organise

                                              Monitor And
                                               Evaluate
                                                                         Acquire and Implement
M1 monitor the processes
M2 assess internal control adequacy
M3 obtain independent assurance
M4 provide for independent audit                             Deliver and
                                                              Support
              DS4 Ensure continuous service
              DS5 Ensure systems security                                                AI1 identify automated solutions
              DS7 Educate and train users                                                AI2 acquire and maintain application software
              DS8 Assist and advise IT customers                                         AI3 acquire and maintain technology infrastructure
              DS9 Manage the configuration                                               AI4 develop and maintain procedures
              DS10 Manage problems and incidents                                         AI5 install and accredit systems
              DS11 Manage data                                                           AI6 manage changes

             COBIT Copyright The Information Technology Governance Institute, All rights reserved. Used with permission
Control Process P06 –
    Control over the IT process of
        communicating management aims and direction
            that satisfies the business requirement of to provide automated process

             that satisfies the business requirement
               to ensure user awareness and understanding of those aims

               is enabled by
               policies established and communicated to the user community; furthermore, standards
             need to be established to translate the strategic options into practical and usable user rules

               and takes into consideration

               • clearly articulated mission
               • technology directives linked to business aims
               • code of conduct/ethics
               • quality commitment
               • security and internal control policies
               • security and internal control practices
               • lead-by-example
               • continuous communications programme
               • providing guidance and checking compliance
Questions, Comments,
                                        and Discussion




                                          How to Contact Me:
                                           Christopher Byrne
                                      iscontrolscaddy@gmail.com
Techies Cartoon Copyright 2000 Jeff Larson, All Rights Reserved, Permission Pending
E-Mail Compliance Frameworks in the Real World
E-Mail Compliance Frameworks in the Real World

More Related Content

What's hot

IT Governance Assessment / Audit - Product Solution
IT Governance Assessment / Audit - Product SolutionIT Governance Assessment / Audit - Product Solution
IT Governance Assessment / Audit - Product Solution
Arul Nambi
 
Day 2 p1 - operate simply
Day 2   p1 - operate simplyDay 2   p1 - operate simply
Day 2 p1 - operate simply
Lilian Schaffer
 
Valiente Balancing It SecurityCompliance, Complexity & Cost
Valiente Balancing It SecurityCompliance, Complexity & CostValiente Balancing It SecurityCompliance, Complexity & Cost
Valiente Balancing It SecurityCompliance, Complexity & Cost
GuardEra Access Solutions, Inc.
 
Secure Enterprise Cloud
Secure Enterprise CloudSecure Enterprise Cloud
Secure Enterprise Cloud
Indu Kodukula
 
Solvency - II Programme Setup
Solvency - II Programme SetupSolvency - II Programme Setup
Solvency - II Programme Setup
gainline
 
Security In A Hybrid MAM and MDM World
Security In A Hybrid MAM and MDM WorldSecurity In A Hybrid MAM and MDM World
Security In A Hybrid MAM and MDM World
Apperian
 
Abb solutions-for-asset-management-the-competitive-advantage2238
Abb solutions-for-asset-management-the-competitive-advantage2238Abb solutions-for-asset-management-the-competitive-advantage2238
Abb solutions-for-asset-management-the-competitive-advantage2238
Thomas Björklund
 
CobIT presentation
CobIT presentationCobIT presentation
CobIT presentation
Marc Vael
 

What's hot (20)

Kostnadseffektiv implementation av er IT-säkerhetsstrategi - PCTY 2011
Kostnadseffektiv implementation av er IT-säkerhetsstrategi - PCTY 2011Kostnadseffektiv implementation av er IT-säkerhetsstrategi - PCTY 2011
Kostnadseffektiv implementation av er IT-säkerhetsstrategi - PCTY 2011
 
The Relationship Between ITG and ITSM Lifecycles
The Relationship Between ITG and ITSM Lifecycles  The Relationship Between ITG and ITSM Lifecycles
The Relationship Between ITG and ITSM Lifecycles
 
IT Governance Assessment / Audit - Product Solution
IT Governance Assessment / Audit - Product SolutionIT Governance Assessment / Audit - Product Solution
IT Governance Assessment / Audit - Product Solution
 
Security models for security architecture
Security models for security architectureSecurity models for security architecture
Security models for security architecture
 
Day 2 p1 - operate simply
Day 2   p1 - operate simplyDay 2   p1 - operate simply
Day 2 p1 - operate simply
 
Valiente Balancing It SecurityCompliance, Complexity & Cost
Valiente Balancing It SecurityCompliance, Complexity & CostValiente Balancing It SecurityCompliance, Complexity & Cost
Valiente Balancing It SecurityCompliance, Complexity & Cost
 
Strategic governance performance_management_systems
Strategic governance performance_management_systemsStrategic governance performance_management_systems
Strategic governance performance_management_systems
 
IT GOVERNANCE OUTSOURCING
IT GOVERNANCE OUTSOURCINGIT GOVERNANCE OUTSOURCING
IT GOVERNANCE OUTSOURCING
 
Afac device-security-july-7-2014v7-2
Afac device-security-july-7-2014v7-2Afac device-security-july-7-2014v7-2
Afac device-security-july-7-2014v7-2
 
Tatakelola Teknologi Informasi
Tatakelola Teknologi InformasiTatakelola Teknologi Informasi
Tatakelola Teknologi Informasi
 
Secure Enterprise Cloud
Secure Enterprise CloudSecure Enterprise Cloud
Secure Enterprise Cloud
 
En arkitektonisk vy av en ledande och dynamisk IT-säkerhetsportfölj - PCTY 2011
En arkitektonisk vy av en ledande och dynamisk IT-säkerhetsportfölj - PCTY 2011En arkitektonisk vy av en ledande och dynamisk IT-säkerhetsportfölj - PCTY 2011
En arkitektonisk vy av en ledande och dynamisk IT-säkerhetsportfölj - PCTY 2011
 
From technology risk_to_enterprise_risk_the_new_frontier
From technology risk_to_enterprise_risk_the_new_frontierFrom technology risk_to_enterprise_risk_the_new_frontier
From technology risk_to_enterprise_risk_the_new_frontier
 
Cyber Crime Conference 2017 - DFLabs Supervised Active Intelligence - Andrea ...
Cyber Crime Conference 2017 - DFLabs Supervised Active Intelligence - Andrea ...Cyber Crime Conference 2017 - DFLabs Supervised Active Intelligence - Andrea ...
Cyber Crime Conference 2017 - DFLabs Supervised Active Intelligence - Andrea ...
 
Sw keynote
Sw keynoteSw keynote
Sw keynote
 
Solvency - II Programme Setup
Solvency - II Programme SetupSolvency - II Programme Setup
Solvency - II Programme Setup
 
Security In A Hybrid MAM and MDM World
Security In A Hybrid MAM and MDM WorldSecurity In A Hybrid MAM and MDM World
Security In A Hybrid MAM and MDM World
 
Abb solutions-for-asset-management-the-competitive-advantage2238
Abb solutions-for-asset-management-the-competitive-advantage2238Abb solutions-for-asset-management-the-competitive-advantage2238
Abb solutions-for-asset-management-the-competitive-advantage2238
 
CobIT presentation
CobIT presentationCobIT presentation
CobIT presentation
 
IT Outsourcing - The GM Way
IT Outsourcing - The GM WayIT Outsourcing - The GM Way
IT Outsourcing - The GM Way
 

Similar to E-Mail Compliance Frameworks in the Real World

ITIL® im Microsoft-Umfeld: Einführung in das MOF
ITIL® im Microsoft-Umfeld: Einführung in das MOFITIL® im Microsoft-Umfeld: Einführung in das MOF
ITIL® im Microsoft-Umfeld: Einführung in das MOF
Digicomp Academy AG
 
Future Focus Infotech
Future Focus InfotechFuture Focus Infotech
Future Focus Infotech
Lyf Ffi
 
Experis Overview
Experis OverviewExperis Overview
Experis Overview
ecoonrad
 
Experis Overview
Experis OverviewExperis Overview
Experis Overview
ecoonrad
 
4. it governance a compass without a map v.2.6 pink elephant
4. it governance a compass without a map v.2.6   pink elephant4. it governance a compass without a map v.2.6   pink elephant
4. it governance a compass without a map v.2.6 pink elephant
aventia
 

Similar to E-Mail Compliance Frameworks in the Real World (20)

Valuendo cyberwar and security (jan 2012) handout
Valuendo cyberwar and security (jan 2012) handoutValuendo cyberwar and security (jan 2012) handout
Valuendo cyberwar and security (jan 2012) handout
 
ITIL® im Microsoft-Umfeld: Einführung in das MOF
ITIL® im Microsoft-Umfeld: Einführung in das MOFITIL® im Microsoft-Umfeld: Einführung in das MOF
ITIL® im Microsoft-Umfeld: Einführung in das MOF
 
Frameworks For Predictability
Frameworks For PredictabilityFrameworks For Predictability
Frameworks For Predictability
 
ThinkFaculty ITIL Training Course IBM
ThinkFaculty ITIL Training Course IBMThinkFaculty ITIL Training Course IBM
ThinkFaculty ITIL Training Course IBM
 
AdvisorAssist Presentation: Cloud Computing and Compliance For RIAs
AdvisorAssist Presentation:  Cloud Computing and Compliance For RIAsAdvisorAssist Presentation:  Cloud Computing and Compliance For RIAs
AdvisorAssist Presentation: Cloud Computing and Compliance For RIAs
 
Marlabs- ISMNY Deck
Marlabs- ISMNY DeckMarlabs- ISMNY Deck
Marlabs- ISMNY Deck
 
IT Control Objectives for SOX
IT Control Objectives for SOXIT Control Objectives for SOX
IT Control Objectives for SOX
 
Smc Assessment Services (Long Form) V2.0
Smc Assessment Services (Long Form) V2.0Smc Assessment Services (Long Form) V2.0
Smc Assessment Services (Long Form) V2.0
 
How to implement interoperability
How to implement interoperabilityHow to implement interoperability
How to implement interoperability
 
Future Focus Infotech
Future Focus InfotechFuture Focus Infotech
Future Focus Infotech
 
Experis Overview
Experis OverviewExperis Overview
Experis Overview
 
Experis Overview
Experis OverviewExperis Overview
Experis Overview
 
4. it governance a compass without a map v.2.6 pink elephant
4. it governance a compass without a map v.2.6   pink elephant4. it governance a compass without a map v.2.6   pink elephant
4. it governance a compass without a map v.2.6 pink elephant
 
Is an agile SDLC an oxymoron?
Is an agile SDLC an oxymoron? Is an agile SDLC an oxymoron?
Is an agile SDLC an oxymoron?
 
It Risk Advisory Brochure
It Risk Advisory BrochureIt Risk Advisory Brochure
It Risk Advisory Brochure
 
It Risk Advisory Brochure
It Risk Advisory BrochureIt Risk Advisory Brochure
It Risk Advisory Brochure
 
It Risk Advisory Brochure
It Risk Advisory BrochureIt Risk Advisory Brochure
It Risk Advisory Brochure
 
FFI PPT
FFI PPT FFI PPT
FFI PPT
 
Enterprise Security Architecture: From access to audit
Enterprise Security Architecture: From access to auditEnterprise Security Architecture: From access to audit
Enterprise Security Architecture: From access to audit
 
BiSL Introduction Eng 2010
BiSL Introduction Eng 2010BiSL Introduction Eng 2010
BiSL Introduction Eng 2010
 

More from Chris Byrne

Tbi rehab family_lecture
Tbi rehab family_lectureTbi rehab family_lecture
Tbi rehab family_lecture
Chris Byrne
 
Handling the Human Side of E-Mail Administration
Handling the Human Side of E-Mail AdministrationHandling the Human Side of E-Mail Administration
Handling the Human Side of E-Mail Administration
Chris Byrne
 

More from Chris Byrne (9)

Prep family lecture_shepherd
Prep family lecture_shepherdPrep family lecture_shepherd
Prep family lecture_shepherd
 
Tbi rehab family_lecture
Tbi rehab family_lectureTbi rehab family_lecture
Tbi rehab family_lecture
 
"Super 11" Sports Information Departments Selected by FWAA
"Super 11" Sports Information Departments Selected by FWAA"Super 11" Sports Information Departments Selected by FWAA
"Super 11" Sports Information Departments Selected by FWAA
 
Jim Nantz's Top 25 Moments in 25 Years At CBS Sports
Jim Nantz's Top 25 Moments in 25 Years At CBS SportsJim Nantz's Top 25 Moments in 25 Years At CBS Sports
Jim Nantz's Top 25 Moments in 25 Years At CBS Sports
 
CBS Sports, the World, Pop Culture, and the Super Bowl
CBS Sports, the World, Pop Culture, and the Super BowlCBS Sports, the World, Pop Culture, and the Super Bowl
CBS Sports, the World, Pop Culture, and the Super Bowl
 
Ten Things to Call “The Big Game” on “Fantastic Sabbath Day”
Ten Things to Call“The Big Game” on “Fantastic Sabbath Day”Ten Things to Call“The Big Game” on “Fantastic Sabbath Day”
Ten Things to Call “The Big Game” on “Fantastic Sabbath Day”
 
Top 10 Tweets for #ESPNFavreRulesforAll
Top 10 Tweets for #ESPNFavreRulesforAllTop 10 Tweets for #ESPNFavreRulesforAll
Top 10 Tweets for #ESPNFavreRulesforAll
 
Handling the Human Side of E-Mail Administration
Handling the Human Side of E-Mail AdministrationHandling the Human Side of E-Mail Administration
Handling the Human Side of E-Mail Administration
 
Privacy Matters for Lotus Notes & Domino Professionals
Privacy Matters for Lotus Notes & Domino ProfessionalsPrivacy Matters for Lotus Notes & Domino Professionals
Privacy Matters for Lotus Notes & Domino Professionals
 

Recently uploaded

0183760ssssssssssssssssssssssssssss00101011 (27).pdf
0183760ssssssssssssssssssssssssssss00101011 (27).pdf0183760ssssssssssssssssssssssssssss00101011 (27).pdf
0183760ssssssssssssssssssssssssssss00101011 (27).pdf
Renandantas16
 
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
amitlee9823
 
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
lizamodels9
 
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
dollysharma2066
 
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabiunwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
Abortion pills in Kuwait Cytotec pills in Kuwait
 
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service BangaloreCall Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
amitlee9823
 
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
dollysharma2066
 
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pillsMifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Abortion pills in Kuwait Cytotec pills in Kuwait
 

Recently uploaded (20)

0183760ssssssssssssssssssssssssssss00101011 (27).pdf
0183760ssssssssssssssssssssssssssss00101011 (27).pdf0183760ssssssssssssssssssssssssssss00101011 (27).pdf
0183760ssssssssssssssssssssssssssss00101011 (27).pdf
 
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
 
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best ServicesMysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
 
VIP Call Girls In Saharaganj ( Lucknow ) 🔝 8923113531 🔝 Cash Payment (COD) 👒
VIP Call Girls In Saharaganj ( Lucknow  ) 🔝 8923113531 🔝  Cash Payment (COD) 👒VIP Call Girls In Saharaganj ( Lucknow  ) 🔝 8923113531 🔝  Cash Payment (COD) 👒
VIP Call Girls In Saharaganj ( Lucknow ) 🔝 8923113531 🔝 Cash Payment (COD) 👒
 
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
 
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
 
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
 
Forklift Operations: Safety through Cartoons
Forklift Operations: Safety through CartoonsForklift Operations: Safety through Cartoons
Forklift Operations: Safety through Cartoons
 
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabiunwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
 
Monte Carlo simulation : Simulation using MCSM
Monte Carlo simulation : Simulation using MCSMMonte Carlo simulation : Simulation using MCSM
Monte Carlo simulation : Simulation using MCSM
 
A DAY IN THE LIFE OF A SALESMAN / WOMAN
A DAY IN THE LIFE OF A  SALESMAN / WOMANA DAY IN THE LIFE OF A  SALESMAN / WOMAN
A DAY IN THE LIFE OF A SALESMAN / WOMAN
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors Data
 
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
 
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service BangaloreCall Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
 
How to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League CityHow to Get Started in Social Media for Art League City
How to Get Started in Social Media for Art League City
 
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
 
VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...
VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...
VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...
 
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pillsMifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
 
Regression analysis: Simple Linear Regression Multiple Linear Regression
Regression analysis:  Simple Linear Regression Multiple Linear RegressionRegression analysis:  Simple Linear Regression Multiple Linear Regression
Regression analysis: Simple Linear Regression Multiple Linear Regression
 
It will be International Nurses' Day on 12 May
It will be International Nurses' Day on 12 MayIt will be International Nurses' Day on 12 May
It will be International Nurses' Day on 12 May
 

E-Mail Compliance Frameworks in the Real World

  • 1.
  • 2.
  • 3. Why We Are Here What compliance and governance is and why you should care Distinguishing Myth from Reality Going Beyond “Just Good Enough” Approaches Introduction to Compliance Frameworks Balancing Competing Frameworks: Apples & Oranges? Implementing Compliance Frameworks E-Mail Management Issues to Be Addressed On-Line resources What do you need to take home?
  • 4.
  • 5. Why Are We Here?
  • 6. We don’t want to be…
  • 7. We want to know how far it is to the hole…
  • 9.
  • 10. Compliance is Everywhere At last count, there are at least 200 international regulatory & legal drivers that must be complied with as tracked by IBM Business Consulting Services
  • 11. Compliance is Everywhere Sarbanes-Oxley FTC SEC rule 17a-4 Patriot Act European Union Privacy Laws California Security Breach Notice Law FDA BASEL II FMFIA HIPAA Financial Services Modernization FISMAV) Act of 1999 (GLBA, Gramm-Leach-Bliley Act, Title
  • 12. Compliance is Everywhere And it makes C-Level executives and and their employees want to just…
  • 13. Compliance is Everywhere Corporate Governance is not an option… Resistance is not only futile…
  • 14. Compliance is Everywhere …but can take you from this…
  • 19.
  • 20.
  • 21.
  • 22.
  • 23.
  • 24.
  • 25. Information technology is so embedded in the operations of an enterprise that strong IT Governance is needed to support corporate governance objectives and compliance requirements.
  • 26. Business Goals, objectives and specific requirements drive IT, not the other way around
  • 27.
  • 28.
  • 29. COBIT Copyright The Information Technology Governance Institute, All rights reserved. Used with permission
  • 30.
  • 31. (IT Strategy and Policy) Requirements Direction Control Goals Responsibilities Objectives Business Governance Business Needs to Information (IT Achieve Its Objectives Control, Risk and Assurance) IT Governance COBIT Copyright The Information Technology Governance Institute, All rights reserved. Used with permission
  • 32.
  • 33. IT Resources Information • Data • Effectiveness • Application Systems • Efficiency • Technology • Confidentiality • Facilities • Integrity • People • Availability • Compliance • Reliability Plan and Organise Monitor And Evaluate Acquire and Implement Deliver and Support COBIT Copyright The Information Technology Governance Institute, All rights reserved. Used with permission
  • 34. PO7 manage human resources PO8 ensure compliance with external requirements PO9 assess risks IT Resources Information PO10 manage projects PO11 manage quality • Data • Effectiveness • Application Systems • Efficiency • Technology • Confidentiality • Facilities • Integrity • People • Availability • Compliance • Reliability Plan and Organise Monitor And Evaluate Acquire and Implement M1 monitor the processes M2 assess internal control adequacy M3 obtain independent assurance M4 provide for independent audit Deliver and Support DS4 Ensure continuous service DS5 Ensure systems security AI1 identify automated solutions DS7 Educate and train users AI2 acquire and maintain application software DS8 Assist and advise IT customers AI3 acquire and maintain technology infrastructure DS9 Manage the configuration AI4 develop and maintain procedures DS10 Manage problems and incidents AI5 install and accredit systems DS11 Manage data AI6 manage changes COBIT Copyright The Information Technology Governance Institute, All rights reserved. Used with permission
  • 35. Control Process P06 – Control over the IT process of communicating management aims and direction that satisfies the business requirement of to provide automated process that satisfies the business requirement to ensure user awareness and understanding of those aims is enabled by policies established and communicated to the user community; furthermore, standards need to be established to translate the strategic options into practical and usable user rules and takes into consideration • clearly articulated mission • technology directives linked to business aims • code of conduct/ethics • quality commitment • security and internal control policies • security and internal control practices • lead-by-example • continuous communications programme • providing guidance and checking compliance
  • 36.
  • 37.
  • 38.
  • 39.
  • 40.
  • 41.
  • 42.
  • 43.
  • 44.
  • 45.
  • 46.
  • 47.
  • 48.
  • 49.
  • 50.
  • 51.
  • 52.
  • 53.
  • 54.
  • 55.
  • 56. Questions, Comments, and Discussion How to Contact Me: Christopher Byrne iscontrolscaddy@gmail.com Techies Cartoon Copyright 2000 Jeff Larson, All Rights Reserved, Permission Pending