Full Disclosure mailing list archives

Re: Compliance Is Wasted Money, Study Finds


From: "Honer, Lance" <lhoner () lecg com>
Date: Tue, 27 Apr 2010 08:58:24 -0400

What's your choice:
Company A installs an anti-virus and updates it regularly (BTW
regularly 
includes once a year).
Company B has a recovery concept, incident response team,
vulnerability
monitoring, patch management, NIDS, security training but no
anti-virus.

You do realize that PCI says everything you stated above needs to be
done, right?

--------------------------------------------------------------------------
This e-mail is confidential, intended only for the named recipient(s) above and may contain information that is 
privileged and confidential. If you receive this message in error, or are not the named recipient(s), please notify the 
sender at the phone number above, do not copy this message, do not disclose its contents to anyone, and delete this 
e-mail message from your computer. Thank you.
 
LECG, LLC and SMART and Associates, LLP have an alternative practice structure. The two companies are separate and 
independent legal entities that work together to meet clients' business needs. LECG, LLC is not a licensed CPA firm.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: