|
02/14/2007, 4:00 PM - 5:00 PM
Speaker: Jeremiah Cruit-Salzberg, Security Architect, Fair Isaac Corp.
Many open source tools are available to assist in meeting many different regulatory compliance objectives including ones for PCI, SOX, and HIPAA. One of the major issues with using open source tools comes with acceptance from internal and external auditing teams. Most of these issues can be overcome with detailed documentation but for each tool discussed a solution for how we justified it to our auditors will be discussed as well. Working with your auditors to verify tools and methodologies used, whether open source or not, is a key element to success in passing audits and depending on your auditors they may be more acceptable to open source or not.


|