Enterprise IT managers need not dread third party security audits, say researchers with security firm SANS.
The company on Monday issued a short list of tips to help IT departments get through audits with minimal headaches.
Among the tips provided by SANS handler Mari Nichols were not to panic prior to an audit, but also be prepared and have possible questions answered in advance. Nichols also recommended that administrators keep copies of security training materials and IT security policies handy.
Other tips included paying careful attention to logging and keeping an untouched workstation on hand for the auditors to browse.
Most importantly, however, was maintaining the right attitude. Nichols said that IT departments should approach audits not as a dreaded chore, but as a learning experience and chance to beef up security protections.
"Playing these situations to your fullest abilities will not only increase the profitability of your business, it will also result in a tightened down security posture for your company," she wrote.
"This may be the straw that increases security in your environment. You may even get your pet project going again after frustrating funding delays."
SANS offers tips for IT audit survival
By
Shaun Nichols
on Aug 18, 2009 2:02PM
Got a news tip for our journalists? Share it with us anonymously here.
Partner Content
Empowering Sustainability: Schneider Electric's Dedication to Powering Customer Success
How Expert Support Can Help Partners and SMBs Realize the Full Value of AI
MSPs with a robust data protection strategy will achieve market success
Guiding customers on the uneven path to AI adoption
How mandatory climate reporting is raising the bar for corporate leadership
Sponsored Whitepapers
Cut through the SASE confusion
Stay protected as cyber threats evolve
Defend Your Network from the Next Generation of AI Threats
The race to AI advantage is on. Don’t let slow consulting projects hold you back.
The changing face of Australian distribution




