Cybersecurity Policy and Data Security

Recent blog entries tagged with Cybersecurity Policy and Data Security.

EDUCAUSE Live! Podcast: What Price Insularity? Reflections About Computer Security Failings.

Created by Gerry Bayne (EDUCAUSE) on January 07, 2008

In this EDUCAUSE Live! podcast, join host, Steve Worona, for the topic "What Price Insularity? Reflections About Computer Security Failings". Steve's guest is Fred Schneider, Professor of Computer Science at Cornell University.

Presentation slides for this audio can be found here.

New Resource Page on PCI DSS (Payment Card Industry Data Security Standard)

Created by Valerie M. Vogel (EDUCAUSE) on June 15, 2007

Explore the new PCI DSS Resource Page. View Community Resources (under the "Other" tab) or contribute your own resources.

Airline passenger's details insecure

Created by Stuart Yeates (University of Oxford) on May 04, 2006

The Guardian is carryingan article by Steve Boggan on how insecure airline passenger'sdetails are. He paints the US government as the principal underminerof the privacy and security of the individual's information, but Iimagine that a number of organisations on this side of the Atlanticfind access to the information very useful too.

UCISA Information Security Toolkit

Created by Stuart Yeates (University of Oxford) on March 15, 2006

USISA
Originally uploaded by Stuart Yeates.

UCISA were at the 2006 JISC Conference, touting their Information Security Toolkit:



The UCISA Information Security Toolkit is intended to support UK Higher and Further Education Institutions in producing Information Security policies to address (and to demonstrate that they are addressing) threats to the confidentiality, integrity and availability of information systems for which they are responsible, and to help meet audit requirements. The sections draw heavily on British Standard BS 7799, not least by adopting its structure for control objectives and controls.


Unfortunately it's very much embedded in the UK legislative framework, so only the technical bits will be of much use to those outside the UK. Strangely enough, I spent three days in Blackpool last week at their big annual event and didn't catch up with the toolkit at all, presumably they were all too busy running the event to promote their own documents.