From: Compliance Pipeline Newsletter [compled@techwire.com]
Sent: Tuesday, October 11, 2005 11:59 AM
To: Hines, Michael S.
Subject: [CPL] Compliance Pipeline Newsletter - 10.11.2005 - Dummies Get A Compliance Guide
Compliance Pipeline Newsletter
www.CompliancePipeline.com
Tuesday, October 11, 2005


In This Issue:
  • Editor's Note: Dummies Get A Compliance Guide
  • Top Compliance News
        - CipherTrust Provides Gateway Security For IM
        - E-Mail Archiving Market Making A Comeback
        - U.S. Awards Contracts To Spur Development And Use Of Interoperable And Secure Health IT
        - More News...
  • Editor's Picks
        - The Pipeline Guide To Security Software
        - Buyer's Guide: HIPAA Compliance Products
        - Locked, But Accessible, Data
        - More Picks...
  • Voting Booth: Cast Your Vote On Compliance As A Driver
  • Sign Up For Information On Our Latest Webcasts
  • Get More Out Of Compliance Pipeline
  • Manage Your Newsletter Subscription


    ------- Advertisement -------------------
    Compliance = ROI
    Global and national regulations are
    changing the way your industry does business.
    But CA can help you see beyond compliance as a burden.
    Find out more and download a free whitepaper:
    "http://clk.atdmt.com/DWO/go/coa0040000013dwo/direct/01/"

    -----------------------------------------

    Editor's Note: Dummies Get A Compliance Guide

    It was as inevitable as my next tax bill; the "rest of us" now have a reference guide for compliance. Wiley Publishing has added IT compliance to the Dummies series, in this case a pocket guide to help with an IT audits for regulations like Sarbanes-Oxley.

    Titled "IT Compliance For Dummies," and penned by some folks at Active Reasoning the booklet directs readers in general fashion how to develop a compliance strategy, how to plan ahead, develop controls, automate processes, validate controls, leverage compliance for other IT practices, and make compliance sustainable.

    The guide also cites many of the common material deficiencies found during Sarbanes-Oxley audits. For instance, did you know that not performing self-assessments is "like putting off cleaning out the refrigerator—the longer you wait, the more you create messy work for yourself." I wondered what that smell was coming from the archives!

    In all seriousness, the booklet is a swift, high-level read that could help simplify the way you approach a long-term compliance program. It's not a detailed how-to journal and it focuses heavily on Active Reasoning's slice of the market, change management, but the 30 minutes it takes to cover this guide, it might be worth being a dummy.

    You know what else might be worth a little added focus? How about your e-mail archiving practices. According to a survey from The ePolicy Institute last year about 21 percent of employers have had employee e-mails and instant messages subpoenaed for a lawsuit or regulatory investigation. And 13 percent have been slapped with workplace lawsuits triggered by employee e-mail.

    Not surprising, vendors continue to see opportunity in this desperate state of affairs, and some markets are seeing a resurgence as a result. Plasmon, the developer of Ultra Density Optical (UDO) storage, brought together a group of vendors around its optical disk technology to sell integrated bundles that include the UDO drives, e-mail archiving software, security and storage management.

    By the same token, the content management market is seeing increased spending due to regulatory requirements and the need to manage all the unstructured data that wanders happily around corporate servers with no version control. And if you are still scratching you head about the best way to satisfy the physical-safeguard standards for HIPAA, and who isn't, you won't want to miss the Buyer's Guide To HIPAA Compliance Products.

    And finally, security is huge and costly piece of the compliance puzzle, and we've compiled all the recent security product reviews from across the Pipeline sites. Check out The Pipeline Guide To Security Software for links to all the hands-on assessments.

    Mitch Irsfeld
    Editor, Compliance Pipeline
    mirsfeld@comcast.net
    www.CompliancePipeline.com


    Keep Getting This Newsletter
    Don't let future editions of Compliance Pipeline Newsletter go missing. Take a moment to add the newsletter's address to your anti-spam whitelist:

    compled@techwire.com

    If you're not sure how to do that, ask your administrator or ISP. Or check your anti-spam utility's documentation. Thanks.


    Top Compliance News

    CipherTrust Provides Gateway Security For IM
    New IronIM appliance extends automated policy, encryption and security features to enterprise instant messaging.

    E-Mail Archiving Market Making A Comeback
    There are growing concerns regarding e-mail and data archival as e-mail records become increasingly important for regulatory and corporate compliance purposes. In a move to take advantage of this market resurgence, Plasmon, the developer of Ultra Density Optical (UDO), brought together a group of vendors around its optical disk technology.

    U.S. Awards Contracts To Spur Development And Use Of Interoperable And Secure Health IT
    The contracts were awarded to three private-public groups that will create and evaluate processes involved with advancing the adoption of standards for features in healthcare IT products.

    Zantaz Unveils Next Version Of Its Discovery System
    New release includes further integration of e-mail/file archiving and discovery management.

    RenewData Brings Out New E-mail Archiving and Compliance System
    Company also debuts the ActiveVault Discovery Engine, designed for culling and legal review of archived e-mail and user files.

    M-Tech Releases New Version Of Its Provisioning System
    ID-Synch 4.0 includes new connectors and enhanced interface.

    e.magination To Develop NSC's Common Compliance Framework
    Software simplifies admin tasks for E-mail systems for midsize businesses.


    Editor's Picks

    The Pipeline Guide To Security Software
    It's getting difficult to choose among the panoply of available security products, and so we've assembled all our recent reviews of security software.

    Buyer's Guide: HIPAA Compliance Products
    It's time to get serious about satisfying HIPAA's physical-safeguard standards. We'll guide you in choosing hardware and software that satisfies those intricate requirements.

    Locked, But Accessible, Data
    Companies must encrypt archives. They also must be able to decrypt them.

    Sneak Preview: ComBrio's Virtual Service Infrastructure 2.0.0.0 (Beta)
    VSI helps you comply with Sarbanes-Oxley regulations through a policy-based VPN-like environment.

    Companies Spending More On Content Management
    More than half (52%) of the respondents in an Information Week survey say that the Sarbanes-Oxley Act has led them to adopt enterprise content management.

    Sign Up For Information On Our Latest Webcasts
    TechWeb's live, interactive webcasts bring the industry's top experts right to your desktop for in-depth discussions about the market's most-pressing issues. Click to receive our weekly update of upcoming TechWebCasts you won't want to miss.


    Voting Booth: Cast Your Vote On Compliance As A Driver For Storage Improvements

    Cast Your Vote Now!
    Compliance management is driving improvements in data handling across the enterprise, but has it improved your basic storage architecture? Let us know by going to http://www.compliancepipeline.com/vote/051013_storage.jhtml and casting your vote.

    Poll Results: SOX Sitting Well
    Despite the costs, some have felt that SOX compliance has forced their companies to adopt beneficial controls, while others consider it an ineffective waste of resources. As we come to crunch time for the second time, we'll ask once again: Has SOX been a net gain, loss or wash?

    Net gain
    33%, 11 votes out of 33

    Net loss
    30%, 10 votes out of 33

    It's a wash
    36%, 12 votes out of 33


    Get More Out Of Compliance Pipeline

    Try Compliance Pipeline's RSS Feed
    Compliance Pipeline's content is available via RSS feed: Get RSS link. The feed is also auto-discoverable to many RSS readers from the Compliance Pipeline home page. Note: RSS feeds are not viewable in most Web browsers. You need an RSS reader, Web-based service, or plug-in to view RSS. Find out which RSS readers the Pipeline editors recommend.

    Discover The Pipelines
    Compliance Pipeline is part of a large series of specialized IT sites from the TechWeb Network. Find out more about the Pipelines on the TechWeb Pipelines site. Every Pipeline site has its own newsletter. Give them a try!

    Recommend This Newsletter To A Friend
    Do you have a friend or colleague who might enjoy this newsletter? Please forward it to him or her and point out the subscription page.


    ------- Advertisement -------------------
    Compliance = ROI
    Global and national regulations are
    changing the way your industry does business.
    But CA can help you see beyond compliance as a burden.
    Find out more and download a free whitepaper:
    "http://clk.atdmt.com/DWO/go/coa0040000013dwo/direct/01/"

    -----------------------------------------

    Manage Your Newsletter Subscription

    To unsubscribe from, subscribe to, or change your e-mail address for this newsletter, please visit the Compliance Pipeline Subscription Center.

    Note: To change your e-mail address, please subscribe your new address and unsubscribe your old one.

    You are subscribed with the address mshines@PURDUE.EDU.

    We take your privacy very seriously. Please review our Privacy Policy.

    Compliance Pipeline Newsletter
    A free service of Compliance Pipeline and the TechWeb Network.
    Copyright (c) 2004-2005 CMP Media LLC
    600 Community Drive
    Manhasset, NY 11030