This piece summarizes the key elements of the three major releases by the FFIEC related to online authentication: The original 2005 authentication guidance, 2006 FAQs and the 2010 draft supplement.
"We want to know what the FFIEC guidelines actually mean and who is responsible for enforcing audits and compliance," says fraud victim Jim Payne, owner of Choice Escrow.
Though the E-Government Act assigns primary responsibility for IT security to agency CIOs, the Cybersecurity and Internet Freedom Act, introduced last week in the Senate, delineates responsibilities for CISOs.
Once a CEO understands the value and risks catered through mobile functionality, it is easier to discuss mobile innovations, policy and how the company can then strike a balance to meet customer and employee requirements.
A preliminary draft of new online authentication guidance from the Federal Financial Institutions Examination Council puts greater responsibility on the shoulders of financial institutions to enhance security.
The information security profession is at a crucial turning point as professionals scramble to develop new skills in the arenas of cloud computing, mobile applications and social media, a new survey shows.
This week's top news and views: NIST issues new guidance on securing public cloud; Senators say no Internet kill switch in their bill; Commission on Cybersecurity for the 44th Presidency sees slow progress; and ex-federal CIO and mom Karen Evans on computer security and kids.
"It shouldn't matter from where the enterprise security services are deployed. We need to just make sure as a team we are consistently closing the vulnerabilities and risk gaps." - Greg Thompson, Scotia Bank.
Our website uses cookies. Cookies enable us to provide the best experience possible and help us understand how visitors use our website. By browsing inforisktoday.asia, you agree to our use of cookies.