Amostra

Assine e ganhe 30% de desconto neste título

R$ 19,90 /mês

R$ 19,90/mês após o teste gratuito de 30 dias. Cancele a qualquer momento.
Curta mais de 100.000 títulos de forma ilimitada.
Ouça quando e onde quiser, mesmo sem conexão
Sem compromisso. Cancele grátis a qualquer momento.

Cybersecurity Program Best Practices

De: United States Department of Labor
Narrado por: Tom Brooks
Teste grátis por 30 dias

R$ 19,90/mês após o teste gratuito de 30 dias. Cancele a qualquer momento.

Compre agora por R$ 17,99

Compre agora por R$ 17,99

Pagar usando o cartão terminado em
Ao confirmar sua compra, você concorda com as Condições de Uso da Audible e a Política de Privacidade da Amazon. Impostos, quando aplicável. PRECISA SER AJUSTADO

Sinopse

Cybersecurity Program Best Practices

ERISA-covered plans often hold millions of dollars or more in assets and maintain personal data on participants, which can make them tempting targets for cyber-criminals. Responsible plan fiduciaries have an obligation to ensure proper mitigation of cybersecurity risks.

The Employee Benefits Security Administration has prepared the following best practices for use by recordkeepers and other service providers responsible for plan-related IT systems and data, and for plan fiduciaries making prudent decisions on the service providers they should hire. Plans’ service providers should:

  1. Have a formal, well-documented cybersecurity program.
  2. Conduct prudent annual risk assessments.
  3. Have a reliable, annual third-party audit of security controls.
  4. Clearly define and assign information security roles and responsibilities.
  5. Have strong access control procedures.
  6. Ensure that any assets or data stored in a cloud or managed by a third party service provider are subject to appropriate security reviews and independent security assessments.
  7. Conduct periodic cybersecurity awareness training.
  8. Implement and manage a secure system development life-cycle (SDLC) program.
  9. Have an effective business resiliency program addressing business continuity, disaster recovery, and incident response.
  10. Encrypt sensitive data, stored and in transit.
  11. Implement strong technical controls in accordance with best security practices.
  12. Appropriately respond to any past cybersecurity incidents.
©2021 Tom Brooks (P)2021 Tom Brooks

O que os ouvintes dizem sobre Cybersecurity Program Best Practices

Nota média dos ouvintes. Apenas ouvintes que tiverem escutado o título podem escrever avaliações.

Avaliações - Selecione as abas abaixo para mudar a fonte das avaliações.