Information Security Standards
Presented by Taiye Lambo
Synopsis:
Technology is not the answer to Information Security.
If we just buy the right products, we still will not have fail-safe
security. The buzzword in the 70's was access control, in the
80's it was anti-virus products, the 90's brought firewalls and
today our information systems are still at greater risk than ever.
The answer is not to be found in technology products alone, they
work fine. It's when they have to interface with people that the
problems arise. Whenever security "fails", there is
a human element that has contributed to it. Information security
really ought to be an ongoing process of risk assessment and risk
mitigation.
It appears the latest buzzword in Information Security is compliance,
but the big question is compliance to what? And how?
Taiye will present a matrix of key industry specific regulatory
requirements and how they map to Control sections within the Internationally
recognized ISO 17799 Standard and will demonstrate how attaining
ISO 17799 compliance can help organizations to better address
a myriad of current and future regulatory and legal requirements
relating to information security.
Bio:
Taiye Lambo is an Information Security specialist; with experience
in design & implementation of Intrusion detection and prevention
systems, Honeypots, Computer Forensics, Ethical Attack & Penetration
Testing, Biometric Identification, Network Security Architecture,
ISO 17799 compliance and BS 7799 Pre-Assessments.
He has executed information security projects for a number of
United Kingdom government agencies and has recently provided information
security consulting to State of Georgia agencies. He is a hybrid
technical and business information security consultant with a
pragmatic holistic approach to information security.
He is also a subject matter expert on Information Security governance
and compliance relating to regulatory standards such as HIPAA,
Sarbanes-Oxley Act, Gramm-Leach-Biley Act (GLBA), FDIC and others.
His Security certifications include CISSP, CCSE and BS7799 Certified
Auditor.
With a Bachelors degree in Electrical Engineering, he has also
earned a Masters degree in Business Information Systems from the
University of East London in the United Kingdom.
Taiye can be reached at tlambo@eFortresses.com
Slides
Controls
Map (.doc)
|