Profile

CommunityPlatform_1350x900.jpg

Mark Rank

Edit My Profile


My Content

1 to 9 of 9 total
Posted By Mark Rank 06-23-2023 10:44:57 AM
Found In Egroup: HECVAT Users
\ view thread
Bradley, (As another vendor) We have adopted the approach that HECVAT is the base -- any other security assessment (including SOC2) is layered on top. We have taken this approach with one off assessments based on NIST 800-171, and will be doing the same for TX-RAMP ongoing compliance. StateRAMP will ...
Posted By Mark Rank 06-16-2023 09:52:32 AM
Found In Egroup: Cybersecurity
\ view thread
Will this group be available to CISOs or the highest-ranking security professional of vendors to the higher-ed vertical? Thanks,Mark Mark RankDirector of Product (including Security Operations)Cirrus IdentityPronouns: he/him/his
Posted By Mark Rank 06-15-2023 07:41:25 AM
Found In Egroup: HECVAT Users
\ view thread
As a vendor, we lead any vendor assessment for a prospective customer with a current HECVAT Full (updated annually). For those customers that require a SOC2 Type 2, we offer a letter of attestation before the execution of a contract. For those that require a review of the SOC2 Type 2 before execution ...
Posted By Mark Rank 08-12-2022 11:16:00 AM
Found In Egroup: Cybersecurity
\ view thread
Tom, Are you asking to setup federated logins on the service provider side (aka enabling federation for an application), or are you looking for help outsourcing federated logins from an directory service or identity provider? ------------------------------ Mark Rank Director of Product Cirrus ...
Posted By Mark Rank 06-08-2022 01:31:33 PM
Found In Egroup: HECVAT Users
\ view thread
Folks - what is the recommended way to move responses from one point release to the other? We were literally getting executive signoff on our HECVAT Full 3.02 as this email came in. Please advise,Mark Mark RankDirector of ProductCirrus IdentityPhone: 414-331-1476 Email: mark.rank@cirrusidentity.comPGP: ...
Posted By Mark Rank 05-20-2022 03:42:01 PM
Found In Egroup: HECVAT Users
\ view thread
Folks: Is there an errata document for the HECVAT versions (specifically HECVAT Full 3.0x)? Unless my eyes are broken, I believe CHNG-13 and CHNG-14 are duplicates. Please advise, Mark ------------------------------ Mark Rank Director of Product Cirrus Identity, Inc. ---------------------------- ...
Posted By Mark Rank 05-17-2022 08:23:55 AM
Found In Egroup: HECVAT Users
\ view thread
Thanks very much Brian and the rest of the HECVAT Team. This will be very helpful. Have a good day,Mark Mark RankDirector of ProductCirrus IdentityPhone: 414-331-1476 Email: mark.rank@cirrusidentity.comPGP: a1bcde09568764437c852910ed5bfe729fe11d57Support: support@cirrusidentity.comPronouns: he/him/h ...
Posted By Mark Rank 05-11-2022 11:06:28 AM
Found In Egroup: HECVAT Users
\ view thread
Jay: Thanks, that is a helpful perspective. Mark Mark RankDirector of ProductCirrus IdentityPhone: 414-331-1476 Email: mark.rank@cirrusidentity.comPGP: a1bcde09568764437c852910ed5bfe729fe11d57Support: support@cirrusidentity.comPronouns: he/him/his
Posted By Mark Rank 05-11-2022 09:22:22 AM
Found In Egroup: HECVAT Users
\ view thread
All: Our general approach aligns with what Brian Markham outlined. I will say the move to HECVAT V3 was a bit bumpy for our organization. While our company does review our HECVAT annually, we were not necessarily moving to the latest version on these reviews. While we have revised our internal processes ...