Most laws and industry regulations are not
specific enough for companies or agencies to determine practices they
need to implement to comply. As a result, auditors assess against industry-wide
standards that guide them through the examination process or provide
clarification on a particular law or regulation.
Contact Us
Select any of the services below for more information.
To design a more comprehensive compliance solution for your business,
contact VeriSign at 650-426-5310 or enterprise_security@verisign.com.
Standard |
What Is It? |
Who Needs to Know about it? |
ISO
27002 |
ISO 27002 is a complex and detailed international
information security standard |
Companies wanting a robust information
security program
|
FFIEC
IT Audit Handbook |
The Federal Financial Institutions Examinations
Council (FFIEC) IT Audit Handbook guides Federal Bank examiners through
IT infrastructure audits. |
FFIEC member institutions that fall under
the purview of its agencies |
FTC
Final Safeguards Rule |
The Federal Trade Commission (FTC) Final
Safeguards Rule provides clarification for complying with security controls
implicit within the Gramm-Leach-Bliley Act. |
Financial institutions |