Book Review: Handbook for Internal Auditors  Charles H. Le Grand | Reviewed by Horst Karin, Ph.D., CISA, CRISC,CISSP This book delivers essential knowledge, tools and information to develop the audit department, audit skills, judgment and efficiencies in providing the audit service and more. Cloud Storage—Bursting Through the Hype  Rico Barrasso and Matt Wallace Cloud-based storage is significantly transforming the manner in which businesses protect, access and restore their critical data and information. Cloud Risk—10 Principles and a Framework for Assessment  David Vohradsky, CGEIT, CRISC The benefits of cloud computing over in-house development are clearly articulated and well known, and they include rapid deployment, ease of customisation, reduced build and testing effort, and reduced project risk. How Strong is Strong User Authentication?  Alessandro Campi This article focuses on the security of the authentication procedure set up by a service provider (SP) using a solution/tool obtained by a technical security provider (TSP). Social Networks and Privacy—Threats and Protection  Guy-Hermann Ngambeket Ndiandukue, CISA, CISM, CGEIT, ITIL V3(F), PMP The aim of this article is twofold: to identify, based on the motivations of Internet users visiting social networks, the risk of violating users’ privacy, and to analyze and evaluate the effectiveness of the control methods used. Five Questions With...  Mark Weatherford, CISM, CISSP Mark Weatherford is the deputy under secretary for cybersecurity for the US Department of Homeland Security (DHS) National Protection and Programs Directorate (NPPD). Help Source Q&A  Gan Subramaniam, CISA, CISM, CCNA, CCSA, CIA, CISSP, ISO 27001 LA, SSCP I would like to know the key clauses in licensing agreements that ought to be in place when licensing software to buyers. Ethics in COBIT 5  Vasant Raval, DBA, CISA Since COBIT 5 has recently been released, it is timely to look at the threads of information ethics in the fabric of this substantially improved and integrated framework. Is Security a Wall or a Door?  Steven J. Ross, CISA, CISSP, MBCP In a recent meeting, the question being debated was whether there were situations in which the security of information could be prudently reduced. JOnline: Réseaux Sociaux et Vie Privée: Menaces et Protections  Guy-Hermann Ngambeket Ndiandukue, CISA, CISM, CGEIT, ITIL V3(F), PMP Cet article a un double objectif: partir des motivations des Internautes à fréquenter les réseaux sociaux en vue d’identifier le risque de violation de leur vie privée, et d’analyser et évaluer l’efficacité des moyens de contrôle de lutte mis en œuvre. |
|
|