<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>CSOONLINE.com - Compliance</title>
    <link>http://www.csoonline.com/</link>
    <description />
    <language>en_US</language>
    <copyright>(c) Copyright 2008 CXO Media, Inc. All Rights Reserved.</copyright>
    <pubDate>Fri, 08 Aug 2008 21:23:34 GMT</pubDate>
    <dc:date>2008-08-08T21:23:34Z</dc:date>
    <dc:language>en_US</dc:language>
    <dc:rights>(c) Copyright 2008 CXO Media, Inc. All Rights Reserved.</dc:rights>
    <item>
      <title>Telecommuting Poses Security, Privacy Risks</title>
      <link>http://www.csoonline.com/article/440074/Telecommuting_Poses_Security_Privacy_Risks</link>
      <description>A new study finds that allowing employees to work from home and telecommute poses security and privacy risks that are not being addressed adequately by business or government.</description>
      <pubDate>Wed, 30 Jul 2008 04:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/440074/Telecommuting_Poses_Security_Privacy_Risks</guid>
      <dc:date>2008-07-30T04:00:00Z</dc:date>
    </item>
    <item>
      <title>State Breach Disclosure Laws - Update</title>
      <link>http://www.csoonline.com/article/439940/State_Breach_Disclosure_Laws_Update</link>
      <description>Five states (and D.C.) have put data breach disclosure laws in the books in recent months. Article includes links to full text of each law.</description>
      <pubDate>Tue, 29 Jul 2008 04:00:00 GMT</pubDate>
      <author>Joan Goodchild</author>
      <guid>http://www.csoonline.com/article/439940/State_Breach_Disclosure_Laws_Update</guid>
      <dc:date>2008-07-29T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Former ISACA Head: SAS 70 Changes Coming</title>
      <link>http://www.csoonline.com/article/439428/Former_ISACA_Head_SAS_Changes_Coming</link>
      <description>Marios Damianides, a partner in Ernst &amp; Young's technology and security risk services group and past president of ISACA's board of directors, expects changes for SAS 70 and more collaboration between security and non-security management groups.</description>
      <pubDate>Fri, 25 Jul 2008 04:00:00 GMT</pubDate>
      <author>Bill Brenner</author>
      <guid>http://www.csoonline.com/article/439428/Former_ISACA_Head_SAS_Changes_Coming</guid>
      <dc:date>2008-07-25T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Rules of Evidence - Digital Forensics Tools</title>
      <link>http://www.csoonline.com/article/374763/Rules_of_Evidence_Digital_Forensics_Tools</link>
      <description>Searching for clues? Here's how to investigate and use digital forensics and e-discovery tools.</description>
      <pubDate>Wed, 04 Jun 2008 04:00:00 GMT</pubDate>
      <author>Mary Brandel</author>
      <guid>http://www.csoonline.com/article/374763/Rules_of_Evidence_Digital_Forensics_Tools</guid>
      <dc:date>2008-06-04T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Digital Forensics Software: The Usual Suspects</title>
      <link>http://www.csoonline.com/article/374764/Digital_Forensics_Software_The_Usual_Suspects</link>
      <description>The four key players in digital forensics software: Guidance, AccessData, Paraben and Technology Pathways</description>
      <pubDate>Wed, 04 Jun 2008 04:00:00 GMT</pubDate>
      <author>Mary Brandel</author>
      <guid>http://www.csoonline.com/article/374764/Digital_Forensics_Software_The_Usual_Suspects</guid>
      <dc:date>2008-06-04T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Threat Watch | Cold Boot: Should New Attack on Encrypted Disks Change the Way Lawmakers Approach Disclosure Legislation 'Safe Harbors'?</title>
      <link>http://www.csoonline.com/article/328918/Threat_Watch_Cold_Boot_Should_New_Attack_on_Encrypted_Disks_Change_the_Way_Lawmakers_Approach_Disclosure_Legislation_Safe_Harbors_</link>
      <description>Recent research from Princeton, McGraw Security Services illustrates how the lack of encryption specifications in legislation could put consumer data at risk.</description>
      <pubDate>Fri, 04 Apr 2008 04:00:00 GMT</pubDate>
      <author>Rick Cook</author>
      <guid>http://www.csoonline.com/article/328918/Threat_Watch_Cold_Boot_Should_New_Attack_on_Encrypted_Disks_Change_the_Way_Lawmakers_Approach_Disclosure_Legislation_Safe_Harbors_</guid>
      <dc:date>2008-04-04T04:00:00Z</dc:date>
    </item>
    <item>
      <title>The Complete Guide to Security Breach Disclosure</title>
      <link>http://www.csoonline.com/article/217082/The_Complete_Guide_to_Security_Breach_Disclosure</link>
      <description>Six-part set of articles takes 360-degree look at the implications of new laws that require organizations to notify people whose personal information has been compromised</description>
      <pubDate>Fri, 29 Feb 2008 05:00:00 GMT</pubDate>
      <author>Sarah D. Scalet</author>
      <guid>http://www.csoonline.com/article/217082/The_Complete_Guide_to_Security_Breach_Disclosure</guid>
      <dc:date>2008-02-29T05:00:00Z</dc:date>
    </item>
    <item>
      <title>Interview: How to Make Guests Feel at Home (and Still Comply with PCI and Sarbanes Oxley Too)</title>
      <link>http://www.csoonline.com/article/217040/Interview_How_to_Make_Guests_Feel_at_Home_and_Still_Comply_with_PCI_and_Sarbanes_Oxley_Too_</link>
      <description>The head of information security for the company that owns the Grand Ole Opry gives a snapshot of his road to compliance</description>
      <pubDate>Fri, 15 Feb 2008 05:00:00 GMT</pubDate>
      <author>Katherine Walsh</author>
      <guid>http://www.csoonline.com/article/217040/Interview_How_to_Make_Guests_Feel_at_Home_and_Still_Comply_with_PCI_and_Sarbanes_Oxley_Too_</guid>
      <dc:date>2008-02-15T05:00:00Z</dc:date>
    </item>
    <item>
      <title>CSO Disclosure Series | Data Breach Notification Laws, State By State</title>
      <link>http://www.csoonline.com/article/221322/CSO_Disclosure_Series_Data_Breach_Notification_Laws_State_By_State</link>
      <description>Five years after California's landmark SB 1386, our interactive map shows you which 38 states have passed laws requiring companies to notify consumers whose personal information has been compromised. Part of an in-depth series about disclosing security breaches.</description>
      <pubDate>Tue, 12 Feb 2008 05:00:00 GMT</pubDate>
      <author>Scott Berinato</author>
      <guid>http://www.csoonline.com/article/221322/CSO_Disclosure_Series_Data_Breach_Notification_Laws_State_By_State</guid>
      <dc:date>2008-02-12T05:00:00Z</dc:date>
    </item>
    <item>
      <title>CSO Disclosure Series | What's Next with Disclosure Legislation?</title>
      <link>http://www.csoonline.com/article/217027/CSO_Disclosure_Series_What_s_Next_with_Disclosure_Legislation_</link>
      <description>An interview with lawyer and breach notification expert Tanya Forsheit on why the United States still doesn&amp;#8217;t have a federal breach notification law. Part of an in-depth series about disclosing breaches</description>
      <pubDate>Mon, 11 Feb 2008 05:00:00 GMT</pubDate>
      <author>Scott Berinato</author>
      <guid>http://www.csoonline.com/article/217027/CSO_Disclosure_Series_What_s_Next_with_Disclosure_Legislation_</guid>
      <dc:date>2008-02-11T05:00:00Z</dc:date>
    </item>
    <item>
      <title>CSO Disclosure Series | The Dos and Don'ts of Disclosure Letters</title>
      <link>http://www.csoonline.com/article/217018/CSO_Disclosure_Series_The_Dos_and_Don_ts_of_Disclosure_Letters</link>
      <description>One security breach, two letters, 11 lessons in the art of telling customers you screwed up. Two PR pros deconstruct the messages that Monster.com and USAJOBS were really giving to customers whose personal information had been disclosed. Part of an in-depth series about disclosing breaches.</description>
      <pubDate>Wed, 06 Feb 2008 05:00:00 GMT</pubDate>
      <author>Scott Berinato</author>
      <guid>http://www.csoonline.com/article/217018/CSO_Disclosure_Series_The_Dos_and_Don_ts_of_Disclosure_Letters</guid>
      <dc:date>2008-02-06T05:00:00Z</dc:date>
    </item>
    <item>
      <title>CSO Disclosure Series | What California's New Medical Disclosure Law Means for the Rest of Us</title>
      <link>http://www.csoonline.com/article/217010/CSO_Disclosure_Series_What_California_s_New_Medical_Disclosure_Law_Means_for_the_Rest_of_Us</link>
      <description>New state law AB 1298, aimed at reducing instances of medical identity theft, could prompt similar legislation elsewhere, but experts are still unsure whether out-of-state companies with information about Californians must comply</description>
      <pubDate>Mon, 04 Feb 2008 05:00:00 GMT</pubDate>
      <author>Katherine Walsh</author>
      <guid>http://www.csoonline.com/article/217010/CSO_Disclosure_Series_What_California_s_New_Medical_Disclosure_Law_Means_for_the_Rest_of_Us</guid>
      <dc:date>2008-02-04T05:00:00Z</dc:date>
    </item>
    <item>
      <title>Numbers: ITIL, COBIT and More; Who Uses What?</title>
      <link>http://www.csoonline.com/article/216935/Numbers_ITIL_COBIT_and_More_Who_Uses_What_</link>
      <description>Adoption rates around the world for ITIL and other guidelines. From the 2007 Global Information Security Survey.</description>
      <pubDate>Fri, 04 Jan 2008 05:00:00 GMT</pubDate>
      <author>Derek Slater</author>
      <guid>http://www.csoonline.com/article/216935/Numbers_ITIL_COBIT_and_More_Who_Uses_What_</guid>
      <dc:date>2008-01-04T05:00:00Z</dc:date>
    </item>
    <item>
      <title>PCI: Smart or Stupid?</title>
      <link>http://www.csoonline.com/article/221343/PCI_Smart_or_Stupid_</link>
      <description>The data security standard isn't as complex as some would have you believe</description>
      <pubDate>Wed, 10 Oct 2007 04:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/221343/PCI_Smart_or_Stupid_</guid>
      <dc:date>2007-10-10T04:00:00Z</dc:date>
    </item>
    <item>
      <title>PCI Is Security Simplicity, Not Complexity</title>
      <link>http://www.csoonline.com/article/216648/PCI_Is_Security_Simplicity_Not_Complexity</link>
      <description>The payment card industry data security standard seems to make relatively smart people instantly dim-witted as they complain about its so-called complexity.</description>
      <pubDate>Thu, 02 Aug 2007 04:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/216648/PCI_Is_Security_Simplicity_Not_Complexity</guid>
      <dc:date>2007-08-02T04:00:00Z</dc:date>
    </item>
  </channel>
</rss>

