IT-Compliance für Banken leichter bewältigen

2020 ◽  
Vol 10 (09) ◽  
pp. 20-22
Author(s):  
D. Schoppe
Keyword(s):  

Für Banken gibt es eine wachsende Anzahl von Rechtsgrundlagen, d. h. Gesetze, Verordnungen, Direktiven und Rundschreiben, die sie im Tagesgeschäft beachten müssen. Gerade die Bedeutung von einem angemessenen Schutz vor IT-Sicherheitsrisiken nimmt zu. EU-weite Programme wie beispielsweise TIBER-EU oder der Nachweis der KRITIS- Anforderungen sollen das bestehende Sicherheitsniveau weiter verbessern. Als ganzheitlichen Ansatz für eine kontinuierliche Evaluierung der Sicherheit von Technologie wie Organisation gleichermaßen empfiehlt sich die Einführung und der Betrieb eines Informationssicherheitsmanagement-Systems.

Queue ◽  
2006 ◽  
Vol 4 (7) ◽  
pp. 38-43 ◽  
Author(s):  
Tracy Ragan
Keyword(s):  

2013 ◽  
Vol 10 (2) ◽  
pp. 703-724 ◽  
Author(s):  
Taerim Lee ◽  
Hun Kim ◽  
Kyung-Hyune Rhee ◽  
Uk Shin

Recently, as IT Compliance becomes more diverse, companies have to take a great amount of effort to comply with it and prepare countermeasures. Especially, E-Discovery is also one of the most notable compliances for IT and law. In order to minimize the time and cost for E-Discovery, many service systems and solutions using the state-of-the-art technology have been competitively developed. Among them, Cloud Computing is one of the most exclusive skills as a computing infrastructure for E-Discovery Service. Unfortunately, these products actually do not cover all kinds of E-Discovery works and have many drawbacks as well as considerable limitations. This paper, therefore, proposes a new type of E-Discovery Service Structure based on Cloud Computing called EDaaS(E-Discovery as a Service) to make the best usage of its advantages and overcome the limitations of the existing E-Discovery solutions. EDaaS enables E-Discovery participants to smoothly collaborate by removing constraints on working places and minimizing the number of direct contact with target systems. What those who want to use the EDaaS need is only a network device for using the Internet. Moreover, EDaaS can help to reduce the waste of time and human resources because no specific software to install on every target system is needed and the relatively exact time of completion can be obtained from it according to the amount of data for the manpower control. As a result of it, EDaaS can solve the litigant?s cost problem.


2007 ◽  
pp. 201-227
Author(s):  
Bill Holtsnider ◽  
Brian D. Jaffe
Keyword(s):  

Author(s):  
Antonio Folgueras Marcos ◽  
José Carlos Alva Tello ◽  
Belén Ruiz-Mezcua ◽  
Ángel García Crespo

In the past few years, many frameworks and standards have been developed to cover different aspects of IT to provide best practices, such as COBIT, ITIL, CMMI, ISO/IEC 20000, ISO/IEC 38500 and ISO/IEC 27000, and improve IT governance and IT service management in organizations. This research presents how self-assessments for IT standards improve significantly the strategic and tactical evaluation of IT requirements. Self-assessments measure the state of an organization in relation to experts’ recommendations of a specific framework. As a result of the number and excellence of the current standards, the authors propose a Compliance Model (MOPLACO) that uses, as a starting point, a combination of self-assessments and standards to plan the early strategic and tactical stages of the IT departments.


2017 ◽  
pp. 857-902
Author(s):  
Michael Klotz
Keyword(s):  

Sign in / Sign up

Export Citation Format

Share Document