Compliance: Difference between revisions
Line 63: | Line 63: | ||
==HIPAA: [[HIPAA | Health Insurance Portability and Accountability Act]]== | ==HIPAA: [[HIPAA | Health Insurance Portability and Accountability Act]]== | ||
<br> | <br> | ||
'''A great resource that is freely available from the good folks at [http://michaelpeters.org/ MichaelPeters.org] is the audit resource for implementing the [http://michaelpeters.org/resource-implementing-health-insurance-portability-accountability-act-hipaa-security-rule/ Health Insurance Portability and Accountability Act (HIPAA) Security Rule]. The audit framework is available for purchase to implement it in your own environment or you can utilize it freely on their site.''' | |||
==PCI: [[PCI:|Payment Card Industry - AKA - VISA CISP]]== | ==PCI: [[PCI:|Payment Card Industry - AKA - VISA CISP]]== |
Revision as of 19:36, 29 November 2013
COBIT 4.0 Domains:
Planning and Organization
Acquisition and Implementation
Delivery and Support
Monitor and Evaluate
ISO 27002 Domains:
Risk Assessment and Treatment
Security Policy
Organizing Information Security
Asset Management
Human Resources Security
Physical and Environmental Security
Communications and Operations Management
Access Control
Information Systems Acquisition, Development and Maintenance
Information Security Incident Management
Business Continuity Management
Compliance
ITIL IT Infrastructure Library:
Service Level Management
Financial Management
Capacity Management
Availability Management
Continuity Management
Security Management
Service Desk Management
Incident Management
Problem Management
Configuration Mangement
Change Management
Release Management
COSO Enterprise Risk Management Framework Domains:
Internal Environment
Objective Setting
Event Identification
Risk Assessment
Risk Response
Control Activities
Information and Communications
Monitoring
NIST: National Institute of Standards and Technology Publications
SP 800-30
SP 800-37
SP 800-53
SP 800-53A
SP 800-59
SP 800-60
FIPS: Federal Information Processing Standards
FISMA: Federal Information Security Management Act: FISMA
DOI: Department of Insurance
HIPAA: Health Insurance Portability and Accountability Act
A great resource that is freely available from the good folks at MichaelPeters.org is the audit resource for implementing the Health Insurance Portability and Accountability Act (HIPAA) Security Rule. The audit framework is available for purchase to implement it in your own environment or you can utilize it freely on their site.
PCI: Payment Card Industry - AKA - VISA CISP
FFIEC Federal Financial Institutions Examination Council