Now Available:

line

Featured Resources:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Rebecca.

« New Privacy Director At the TSA | Main | U.S. FTC Today Announced They Will Follow the OECD Recommendations for Combatting Spam »

Great Resource Links from Schmidt Testimony to the House Small Business Committee

Howard Schmidt provided "The State of Small Business Security in a Cyber Economy" testimony to the House Small Business Committee on March 16.  He provided some great links to resources that not only can benefit small businesses, but really any size of business.  An excerpt of some of the testimony containing many of these links include:

"B.                 Awareness and Training
1.                  There is a real need for SMBs to understand that threats against IT systems are not just directed against large companies and large enterprises.  There is a real need to provide the SMBs with a clear understanding that criminal activity is often directed at them as well. Knowing that you are a potential target is important to understand how to keep from becoming a victim.
2.                  The Treasury Department has released a DVD on called “Identity Theft; Outsmarting the Crooks” that is available to a wide audience including SMBs. The FTC, USPS, USSS, Army CID as well as other private sectors groups worked to create this DVD. 

3.                  The FTC has long been a leader in providing awareness and continues to lead in this role.  In addition to the multiple efforts that they partner with other public and private entities, they have created a web site in concert with the Department of Commerce, Department of Homeland Security, USPS and the SEC.  This web site provides a wealth of information that is vital to understanding cyber security and helps SMBs understand the threats that they and their customers face. 
4.                  The National Cyber Security Alliance, formed in 2003 is a private-public partnership has a dedicated section to help SMBs learn about Cyber Security, Data recovery and reporting of cyber crimes

5.                  The Multi State ISAC, under the leadership of Will Pelgrin, from Governor Pataki’s office, has worked with the states to provide the awareness and training so states can pass this information on to their businesses and consumers in their jurisdictions.

6.                  The US-CERT, with the Department of Homeland Security  provide free resources that allow businesses of all sizes receive alerts and best practices free of charge. 

7.                  The National Cyber Security Partnership, led by the US Chamber of Commerce, Technet, Business Software alliance and the Information Technology Association of America (ITAA) formed this partnership, in a true private-public partnership, created task forces to provide awareness to SMBs
8.                  The Industry Security Alliance created a SMB “Common Sense Guide” to Cyber Security.  This has been distributed through many organizations including the US Cert, Ready.gov, the US Chamber of Commerce as well as a number of other web sites.
"

Technorati Tags






TrackBack

TrackBack URL for this entry:
http://www.realtime-itcompliance.com/type/mt-tb.cgi/57

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Rebecca Herold's Bio:

Rebecca Herold,CISSP, CIPP, CISM, CISA, FLMI, has been providing information security, privacy and regulatory assistance and services to organizations from a wide range of industries for over 18 years. Rebecca was instrumental in building the information security and privacy program while at Principal Financial Group, which was awarded the CSI Information Security Program of the Year Award in 1998. IT Security ranked Rebecca as one of the top 59 IT security influencers, and Computerworld put Rebecca their list of the 25 top privacy experts and on their list of the 9 best privacy consulting firms. Rebecca has been CPO for two consulting organizations, and has had her own information privacy, security and compliance business since 2004. Rebecca has written chapters for several books, dozens of articles, and has been writing a monthly privacy column for the CSI Alert newsletter since the beginning of 2001, and is working on her 11th book. Some of her other books include The Privacy Papers, Managing an Information Security and Privacy Awareness and Training Program, The Definitive Guide to Security Inside the Perimeter (Realtime Publishers), The Shortcut Guide to Improving IT Service Support through ITIL (Realtime Publishers), and The Practical Guide to HIPAA Privacy and Security Compliance. In addition, Rebecca is the leader of The Realtime IT Compliance Community where she posts to her IT Compliance weblog. You can contact Rebecca at: rebecca_herold@realtimepublishers.net.