{"id":205,"date":"2009-05-07T00:00:00","date_gmt":"2009-05-07T00:00:00","guid":{"rendered":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/2009\/05\/07\/expert-names-top-10-audit-issues-of-2009\/"},"modified":"2021-12-30T11:36:44","modified_gmt":"2021-12-30T11:36:44","slug":"expert-names-top-10-audit-issues-of-2009","status":"publish","type":"post","link":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/2009\/05\/07\/expert-names-top-10-audit-issues-of-2009\/","title":{"rendered":"Expert Names Top 10 Audit Issues of 2009"},"content":{"rendered":"<p>As IT environments become more complex, enterprises rely on them more than ever before, said Michael Juergens, principle at Deliotte &#038; Touche, speaking at the ISACA CACS audit and compliance conference.  Top challenges include cloud computing, virtualization, and a company&#8217;s own employees. There may be a greater or lesser risk depending on your industry, technology, business processes, and other factors,&#8221; he added.  He said that auditors should make a careful risk assessment at any enterprise that uses external cloud computing solutions.  Juergens added that virtualization, often a key component of private clouds, carries the same risks as public clouds.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>During this economic downturn, many companies will face disgruntled employees and will need to be able to control their access.<\/p>\n<p>&#8220;Specific attention items should be: timely removal of access, periphery security, internal security architecture, physical security and badge location, help desk procedures, workstation security and IDS management,&#8221; Juergens said.<\/p>\n<p>Many help desks and incident response teams will be understaffed, and Juergens advised that now is a good time to re-examine security procedures.<\/p>\n<p>Enterprise search tools are more powerful than before, but auditors must &#8220;review data classification schema, access management, index design and maintenance, and user training,&#8221; said Juergens.<\/p>\n<p>IT organizations must have contingency plans in place in case a partner fails and must be able to monitor the status of the entire supply chain, including that part of it that is outside the company.<\/p>\n<p>For those organizations pursuing green IT initiatives, auditors must monitor their effectiveness and their compliance with local and federal law.<\/p>\n<p>http:\/\/www.internetnews.com\/bus-news\/article.php\/3819156\/Expert+Names+Top+10+Audit+Issues+of+2009.htm<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-205","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/posts\/205","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/comments?post=205"}],"version-history":[{"count":1,"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/posts\/205\/revisions"}],"predecessor-version":[{"id":2692,"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/posts\/205\/revisions\/2692"}],"wp:attachment":[{"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/media?parent=205"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/categories?post=205"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cybersecurityinstitute.com\/blog\/index.php\/wp-json\/wp\/v2\/tags?post=205"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}