Unified Compliance Project (UCP)
The Unified Compliance Project is worth considering.
"ITCi's Unified Compliance Project (UCP) is the first independent
initiative to exclusively support IT compliance management. The UCP
parses and reconstructs complex corporate regulations into a holistic
IT compliance view.
Most importantly, by focusing on commonalities across regulations,
standards-based development, and simplified architectures, the UCP
supports a strategic approach to IT compliance that reduces cost,
limits liability, and leverages the value of compliance-related
technologies and services across the enterprise."
UCP Methodology:
http://www.itcinstitute.com/display.aspx?id=1811
Sample IT Impact Matrix:
http://download.101com.com/pub/itci/Files/SysConsample.pdf
Create a Customized Matrix:
1. Surf to: http://www.itcinstitute.com/ucp
2. Click on "Customize an IT Impact Matrix specific to your
regulatory requirements."
3. Select specific regulations and click Submit
4. Click on a technology impact area
5. Click on "FULL HTML MATRIX"
6. Create a free account and click Submit
Kind regards,
Gideon
Gideon T. Rasmussen
CISSP, CISA, CISM, IAM
Charlotte, NC
http://www.virtualcso.com
http://www.ussecurityawareness.org
http://groups.yahoo.com/group/insider-threat
http://groups.yahoo.com/group/security-awareness
http://groups.yahoo.com/group/gideons-infosec-list
Posted:
Wed Jan 31, 2007 3:03 am
Copyright © 2002 - 2007 Gideon T. Rasmussen All Rights Reserved.
Legal Notices