<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:tristana="http://www.tristana.org">
  <channel>
    <tristana:self>http://www.itproductivity.org/news/itpc.xml</tristana:self>
    <title>IT Productivity Center</title>
    <description>Tools for CIO, CSO, and CFO can use for Sarbanes Oxley, Disaster Recovery, Security, Job Descriptions, IT Service Management,  Change Control, Help Desk, Service Requests, SLAs, and Metrics.</description>
    <link>http://www.itproductivity.org</link>
    <language>en-US</language>
    <dc:creator>Webmaster</dc:creator>
    <copyright>© 2005 - 2012 IT Productivity Center  -- ALL RIGHTS RESERVED</copyright>
    <pubDate>Thu, 17 May 2012 08:10:12 -0600</pubDate>
    <image><link>http://www.itproductivity.org</link><url>http://www.itproductivity.org/images/logo_sm.gif</url><title>IT Productivity Center</title></image>
    <item>
      <title>BYOD improves productivity</title>
      <description>
&lt;P&gt;&lt;A href="http://www.itproductivity.org/Infrastructure.html"&gt;&lt;IMG border=0 
hspace=5 alt="IT Infrastructure, Strategy, and Charter Template" vspace=5 
align=right 
src="http://www.itproductivity.org/images/IT_Infrastructure_Strategy_Charter.gif" 
width=85 height=110&gt;&lt;/A&gt;The latest results from a quarterly survey of IT 
decision makers shows that a significant number of companies with tablets 
deployed are seeing productivity gains tied directly to their use.&lt;/P&gt;
&lt;P&gt;In the survey of over a thousand IT decision-makers, 74% indicated that using 
tablet computers and smartphones led to an increase in productivity in their 
organization while 25% of those said it has led to a significant increase. In 
addition, half of those surveyed said they felt the use of tablets and 
smartphones has led to cost savings in their organization. &lt;/P&gt;
&lt;DIV align=center&gt;&lt;A 
href="http://www.itproductivity.org/session/catalog_items.aspx?catalog=70&amp;amp;detail=1&amp;amp;pos=1"&gt;&lt;IMG 
border=0 hspace=5 alt=order 
src="http://www.itproductivity.org/images/Order_Policies.png"&gt;&lt;/A&gt;&lt;A 
href="http://www.itproductivity.org/Register_CIO_policies.asp"&gt;&lt;IMG border=0 
hspace=5 alt="" 
src="http://www.itproductivity.org/images/Order_Download_Pages.png"&gt;&lt;/A&gt;&lt;/DIV&gt;
&lt;P&gt;Addressing the so-called &lt;A 
href="http://www.itproductivity.org/individual_policies.htm"&gt;BYOD&lt;/A&gt; (Bring 
Your Own Device) trend, 64% of the IT decision-makers at large businesses 
reported that consumer technology adoption has led to cost savings, while 42% 
said they experienced significant cost savings.&lt;/P&gt;</description>
      <link>http://www.itproductivity.org/individual_policies.htm</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Thu, 17 May 2012 08:09:58 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2012:ABF2A59B-AF00-48CF-A82E-667AEC1134D4.41046.3384249768</guid>
      <category>productivity</category>
      <category>BYOD</category>
      <category>policies</category>
      <category>best practices</category>
    </item>
    <item>
      <title>Mobile devices put a strain on help desk staff</title>
      <description>&lt;P&gt;&lt;A href="http://www.itproductivity.org/Offer_CIO.htm"&gt;&lt;/A&gt;&lt;A 
href="http://www.itproductivity.org/Infrastructure.html"&gt;&lt;IMG border=0 hspace=5 
alt="IT Infrastructure, Strategy, and Charter Template" vspace=5 align=right 
src="http://www.itproductivity.org/images/IT_Infrastructure_Strategy_Charter.gif" 
width=85 height=110&gt;&lt;/A&gt;IT Help desks need to focus more of their resources 
handling mobile computing.&amp;nbsp; Even though remote access is only available to 
one third of mobile workers and instant messaging is only available to one 
quarter, CIOs need to consider new technologies when providing support to 
workers who do not have ready access to in-person support options. Policies and 
performance metrics are a must.&lt;/P&gt;
&lt;DIV align=center&gt;&lt;A 
href="http://www.itproductivity.org/session/catalog_items.aspx?catalog=70&amp;amp;detail=1&amp;amp;pos=1"&gt;&lt;IMG 
border=0 hspace=5 alt=order 
src="http://www.itproductivity.org/images/Order_Policies.png"&gt;&lt;/A&gt;&lt;A 
href="http://www.itproductivity.org/Register_CIO_policies.asp"&gt;&lt;IMG border=0 
hspace=5 alt="" 
src="http://www.itproductivity.org/images/Order_Download_Pages.png"&gt;&lt;/A&gt;&lt;/DIV&gt;
&lt;P&gt;Documenting a clear set of IT policies is a resource-intensive process for 
CIO and their staffs due to the research and writing time involved. And once 
policies are created, the next step is to communicate and gain acceptance for 
those policies throughout the organization. Wouldn't it be nice to start with 
boiler plate templates that require only minor customizing?&lt;/P&gt;</description>
      <link>http://www.itproductivity.org/individual_policies.htm</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Sat, 12 May 2012 18:16:59 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2012:AB40C210-7615-468C-9840-06832664BB47.41041.7572505671</guid>
      <category>Mobile device</category>
      <category>security</category>
      <category>policy</category>
      <category>device management</category>
      <category>byod</category>
    </item>
    <item>
      <title>Meeting productivity improvement</title>
      <description>&lt;P&gt;Ideas to improve meeting productivity&lt;A 
href="http://itproductivity.org/Offer_CIO.htm"&gt;&lt;IMG border=0 hspace=5 
alt="CIO Productivity Kit" vspace=5 align=right 
src="http://itproductivity.org/images/CIOkit.gif" width=85 height=110&gt;&lt;/A&gt;&lt;A 
href="http://itproductivity.org/Infrastructure.html"&gt;&lt;IMG border=0 hspace=5 
alt="IT Infrastructure, Strategy, and Charter Template" vspace=5 align=right 
src="http://itproductivity.org/images/IT_Infrastructure_Strategy_Charter.gif" 
width=85 height=110&gt;&lt;/A&gt;&lt;/P&gt;
&lt;UL&gt;
  &lt;LI&gt;Have agendas with goals objectives. It's considered bad business manners 
  to send a meeting request without providing an agenda. When calling a meeting 
  focus agenda on expressly stating the goal(s) of the meeting. 
  &lt;LI&gt;Replace the default 60-minute meeting time slot with a 20-minute meeting 
  unit. For some inexplicable reason, people seem to naturally default to 60 
  minutes as the amount of time needed for a meeting. And while that may be the 
  case in certain circumstances, it should not be the default position. In place 
  of a 60-minute default time slot, adopt the 20-minute meeting unit. If a 
  particular topic needs more time than that, it is up to the meeting organizer 
  to convince the participants that two (or three, or four) meeting units of 20 
  minutes are necessary. 
  &lt;LI&gt;Have people stand during meeting.&amp;nbsp; It is too easy to "waste time" 
  when everyone is sitting.&amp;nbsp; 
  &lt;LI&gt;Orient the meeting toward follow-ups and actions. Meetings produce lots of 
  ideas and discussion. That's wonderful. But the real purpose of most meetings 
  is to agree on next steps and actions. Keep a focus on targeted actions and 
  your meetings will be productive. Allow them to become discussion forums for 
  "important issues," and they will feel long and painful.&lt;/LI&gt;&lt;/UL&gt;
&lt;DIV align=center&gt;&lt;A 
href="http://www.e-janco.com/session/catalog_items.aspx?catalog=283&amp;amp;detail=1"&gt;&lt;IMG 
border=0 hspace=10 alt="Order IT Infrastructure Kit" vspace=5 align=middle 
src="http://www.e-janco.com/images/Order_Infrastructure_Strategy.png"&gt;&lt;/A&gt;&lt;A 
href="http://www.e-janco.com/Register_infrastructure.asp"&gt;&lt;IMG border=0 
hspace=10 alt="Download Infrastructure" vspace=5 align=middle 
src="http://www.e-janco.com/images/Order_Selected.png"&gt;&lt;/A&gt;&lt;/DIV&gt;</description>
      <link>http://itproductivity.org/individual_policies.htm</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Sun, 29 Apr 2012 01:41:28 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2011:5E4389A4-E53D-413D-86E0-14101962F9B2.40869.3224627662</guid>
      <category>productivity</category>
      <category>meetings</category>
      <category>agenda</category>
    </item>
    <item>
      <title>Labor Force Participation Rate at Lowest Level in over 40 Years</title>
      <description>&lt;P&gt;The BLS data shows that the participation rate in the job market is at levels 
that have not been seen since the 1970's. In March of 2012 the work force 
participation percentage of all employees (male and female) was at 63.8% 
according to the BLS data.&lt;/P&gt;
&lt;P align=center&gt;&lt;A 
href="http://www.e-janco.com/www.e-janco.com/session/catalog_items.aspx?catalog=10&amp;amp;detail=1&amp;amp;pos=1"&gt;&lt;IMG 
border=0 alt="Work Force Participation" 
src="http://www.e-janco.com/EmploymentCharts/LaborForceParticipation1203.png"&gt;&lt;/A&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
  &lt;P align=center&gt;&lt;A 
  href="http://www.e-janco.com/www.e-janco.com/session/catalog_items.aspx?catalog=10&amp;amp;detail=1&amp;amp;pos=1"&gt;&lt;/A&gt;&lt;/P&gt;
  &lt;DIV align=center&gt;&lt;A 
  href="http://www.itproductivity.org/session/catalog_items.aspx?catalog=10&amp;amp;detail=1&amp;amp;pos=1"&gt;&lt;IMG 
  border=0 alt="" src="http://www.itproductivity.org/images/Blue_Order_Now.gif" 
  width=124 height=22&gt;&lt;/A&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;A 
  href="https://novisurvey.net/n/SalarySurvey.aspx" target=_blank&gt;&lt;/A&gt;&amp;nbsp; &lt;A 
  href="http://www.itproductivity.org/Register_2010_IT_Salary_Survey.asp"&gt;&lt;IMG 
  border=0 alt="" 
  src="http://www.itproductivity.org/images/Blue_Download_Summary.gif" width=173 
  height=22&gt;&lt;/A&gt;&lt;/DIV&gt;
  &lt;DIV align=left&gt;&amp;nbsp;&lt;/DIV&gt;
  &lt;DIV align=left&gt;Assuming that there is a significant downsizing of the 
  military and there are no new programs to get jobs for soldiers coming home 
  then the true unemployment levels will not go down for some 
time.&lt;/DIV&gt;&lt;/BLOCKQUOTE&gt;</description>
      <link>http://www.e-janco.com/Salary.htm</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Sun, 15 Apr 2012 12:57:44 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2012:7099694E-5C85-47F6-AA6E-F4575584D7FF.41014.5211753588</guid>
      <category>employment</category>
      <category>job market</category>
      <category>benefits</category>
      <category>compensastion</category>
    </item>
    <item>
      <title>Mobile device usage improves productivity</title>
      <description>&lt;P&gt;&lt;A href="http://www.e-janco.com/BYOD_policy.htm"&gt;&lt;IMG border=0 hspace=3 
alt="BYOD Policy" vspace=3 align=right 
src="http://www.e-janco.com/images/BYOD.gif" width=85 height=110&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Today's most productive employees are not tied to a desk, an office, or a 
location. They are mobile. And your companys IT strategy has to be ready to 
support them with easy, reliable, 24/7 access to the business information they 
need, from anywhere in the world, across a broad range of communication devices. 
&lt;/P&gt;
&lt;P align=center&gt;&lt;A 
href="http://www.itproductivity.org/session/catalog_items.aspx?catalog=70&amp;amp;detail=1&amp;amp;pos=1"&gt;&lt;IMG 
border=0 alt=order 
src="http://www.itproductivity.org/images/Order_red.gif"&gt;&lt;/A&gt;&lt;A 
href="http://www.itproductivity.org/Register_Individual_policies.asp"&gt;&lt;IMG 
border=0 alt="" 
src="http://www.itproductivity.org/images/Download_red.gif"&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Mobile contentmanagement increases user productivity, ramps up customer 
engagement, enhances customer service, maximizes collaboration and drives more 
effective business decision-making.&lt;/P&gt;</description>
      <link>http://www.itproductivity.org/individual_policies.htm#tpm1_8</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Wed, 11 Apr 2012 12:53:49 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2012:71E1E080-10A3-4DE7-A5A1-62527BA22DE5.41010.5355045602</guid>
      <category>mobile computing</category>
      <category>security</category>
      <category>productivity</category>
    </item>
    <item>
      <title>Disaster planning state of the art solutions</title>
      <description>&lt;P align=center&gt;&lt;A 
href="http://www.itproductivity.org/session/add_product.aspx?catalog=191"&gt;&lt;IMG 
border=0 alt=order 
src="http://www.itproductivity.org/images/Order_red.gif"&gt;&lt;/A&gt;&amp;nbsp;&amp;nbsp; &lt;A 
href="http://www.itproductivity.org/Register_disaster_planning_template.asp"&gt;&lt;IMG 
border=0 alt=Download 
src="http://www.itproductivity.org/images/Download_Red.gif"&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P align=left&gt;&lt;A 
href="http://www.itproductivity.org/Disaster-Recovery-Planning.htm"&gt;&lt;IMG 
border=0 hspace=5 alt="Disaster Recovery Business Continuity" vspace=5 
align=right src="http://www.itproductivity.org/images/disaster_recovery.gif" 
width=85 height=110&gt;&lt;/A&gt;Not all &lt;A 
href="http://www.e-janco.com/DisasterRecoveryManual.html"&gt;disaster recovery 
&lt;/A&gt;applications are created equal. There are three main methods for providing 
backup for virtual environments in the industry today. Understanding how these 
methods impact your environment as a whole, is key to making sound decisions 
when choosing the correct application for your business. &lt;/P&gt;
&lt;P&gt;In our &lt;A 
href="http://www.e-janco.com/disasterplanningTechUpdate.htm"&gt;Disaster Recovery 
Planning Template &lt;/A&gt;Janco presents: &lt;/P&gt;
&lt;UL&gt;
  &lt;LI&gt;Review these methods to compare and contrast the impact on the environment 
  &lt;/LI&gt;
  &lt;LI&gt;Strategies&lt;/LI&gt;
  &lt;LI&gt;See how each method effects the backup window and storage and the MTPOD 
  (&lt;A 
  href="http://www.e-janco.com/Maximum-Tolerable-Period-of-Disruption.html"&gt;Maximum 
  Tolerable Period of Recovery&lt;/A&gt;)&lt;/LI&gt;
  &lt;LI&gt;&amp;nbsp;Present state of the art solutions to the global body of knowledge 
  for DR/BC, including current international standards and best 
practices.&lt;/LI&gt;&lt;/UL&gt;</description>
      <link>http://www.itproductivity.org/Disaster-Recovery-Planning.htm</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Tue, 03 Apr 2012 10:35:57 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2012:DFAC5D39-3377-4EA8-A87F-EC5AEDFB30B0.41002.4363616088</guid>
      <category>disaster recovery</category>
      <category>business continuity</category>
      <category>business</category>
      <category>computers</category>
      <category>software</category>
      <category>security</category>
      <category>backup</category>
      <category>remote offices</category>
    </item>
    <item>
      <title>EU Proposes New Security Requirements</title>
      <description>&lt;DIV id=rightColumn1&gt;
&lt;DIV align=center&gt;&lt;A 
href="http://www.itproductivity.org/session/add_product.aspx?catalog=194"&gt;&lt;IMG 
border=0 hspace=10 alt="Security Manual Template" vspace=10 align=right 
src="http://www.itproductivity.org/images/securitymanual.gif" width=240 
height=254&gt;&lt;/A&gt;&lt;/DIV&gt;&lt;/DIV&gt;
&lt;P&gt;EU proposed the replacement&amp;nbsp;of Data Protection Directive 95/46, an 
important component of EU privacy and human rights law under which organizations 
in both the public and private sector have been operating for thirteen years. 
&lt;/P&gt;
&lt;P&gt;It would reduce bureaucratic compliance requirements for many organizations 
and provide a single set of compliance laws across Europe. At the same time, it 
would impose a greater responsibility on organizations to protect against and 
acknowledge data breaches, introducing stiffer penalties for organizations that 
fall short of the legal requirements. This would be no bad thing. Senior 
management need to act to stop the flow of sensitive information that is leaking 
out of organizations. The right information policies and procedures need to be 
in place. All too often, it seems that organizations are mopping the floor after 
the leak. &lt;/P&gt;
&lt;P align=center&gt;&lt;A 
href="http://www.itproductivity.org/session/add_product.aspx?catalog=194"&gt;&lt;IMG 
border=0 alt=order 
src="http://www.itproductivity.org/images/Order_red.gif"&gt;&lt;/A&gt;&amp;nbsp;&amp;nbsp; &lt;A 
href="http://www.itproductivity.org/register_security_policies_procedures_template.ASP"&gt;&lt;IMG 
border=0 alt=Download 
src="http://www.itproductivity.org/images/Download_Red.gif"&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;In particular, the draft EU proposal includes four requirements that would, 
if adopted, have a far-reaching impact on all organizations that do business in 
Europe.&lt;/P&gt;
&lt;UL&gt;
  &lt;LI&gt;A mandatory notification of breaches. This recommends that both the 
  relevant Data Protection Authorities (DPAs) - [in the UK's case this would be 
  the ICO]&amp;nbsp; -&amp;nbsp;and all affected individuals have to be notified within 
  24 hours of a data security breach, including unauthorised destruction or 
  loss. The data protection authorities must be notified even in the absence of 
  any risk of harm to data.&lt;BR&gt;&lt;BR&gt;This requirement raises a number of important 
  questions including the need for data breach thresholds: does this requirement 
  apply to the loss of a single record, for example, and would there be a longer 
  time limit if the data breach involved the loss of millions of customer 
  records? It also raises the question as to whether public and private sector 
  organizations would be able and indeed willing, to self-regulate. &lt;BR&gt;&lt;/LI&gt;
  &lt;LI&gt;All public sector organizations, and private sector organizations with 
  more than 250 employees, to have a named data protection officer. This could 
  have significant resource, training and recruitment implications for many 
  organizations. One option could be to add the responsibility to the remit of 
  an appropriately skilled employee.&lt;BR&gt;&lt;/LI&gt;
  &lt;LI&gt;Regulatory authorities would have powers to impose fines of up 1 million 
  Euros&amp;nbsp;- &amp;nbsp;or two percent of turnover for private sector 
  organizations&amp;nbsp;- &amp;nbsp;for failures to comply with the regulation. That 
  the EU is prepared to authorise this level of punishment highlights just how 
  seriously data protection is to be taken. &lt;BR&gt;&lt;/LI&gt;
  &lt;LI&gt;Give individuals the 'right to be forgotten'. In essence, it states that 
  individuals should have greater control over their data and be allowed to 
  demand the removal or deletion of personal records from any organization that 
  holds them. If adopted, this requirement would have immense resource 
  implications for organizations and could be time-consuming and complex to 
  implement, particularly where it relates to the fast-moving world of social 
  media. However, the small print suggests that this right is a 'qualified' 
  one.&lt;/LI&gt;&lt;/UL&gt;</description>
      <link>http://www.itproductivity.org/security.htm</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Fri, 30 Mar 2012 08:01:36 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2012:998B6631-2644-4AE6-BD69-CF7F6F3A6D13.40998.3276925</guid>
      <category>security</category>
      <category>identity theft</category>
      <category>computers</category>
      <category>sensitive information</category>
      <category>EU</category>
    </item>
    <item>
      <title>Proposed new manadated compliance for executive and CIO compensation</title>
      <description>&lt;P&gt;An entirely new and potentially more invasive accounting-related influence on 
executive compensation (including CIOs), in the form of proposed amendments to 
Public Company Accounting Oversight Board (PCAOB) auditing standards. If 
adopted, the proposed amendments could spur corporate auditors to force changes 
to compensation programs due to unacceptable risks of material misstatement, an 
increased risk of fraud, or both.&lt;/P&gt;
&lt;P align=center&gt;&amp;nbsp;&lt;A 
href="http://www.itproductivity.org/session/catalog_items.aspx?detail=1&amp;amp;catalog=10&amp;amp;pos=1"&gt;&lt;IMG 
border=0 hspace=10 alt="IT Compensation Data" vspace=5 align=middle 
src="http://www.itproductivity.org/images/Salaries.png" 
longDesc="IT Salary Data"&gt;&lt;/A&gt;&lt;/P&gt;
&lt;DIV align=center&gt;&lt;A 
href="http://www.itproductivity.org/session/catalog_items.aspx?catalog=10&amp;amp;detail=1&amp;amp;pos=1"&gt;&lt;IMG 
border=0 alt="" src="http://www.itproductivity.org/images/Blue_Order_Now.gif" 
width=124 height=22&gt;&lt;/A&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;A 
href="https://novisurvey.net/n/SalarySurvey.aspx" target=_blank&gt;&lt;/A&gt;&amp;nbsp; &lt;A 
href="http://www.itproductivity.org/Register_2010_IT_Salary_Survey.asp"&gt;&lt;IMG 
border=0 alt="" 
src="http://www.itproductivity.org/images/Blue_Download_Summary.gif" width=173 
height=22&gt;&lt;/A&gt;&lt;/DIV&gt;
&lt;P&gt;&lt;A href="http://www.itproductivity.org/Salary.htm"&gt;Executive compensation 
&lt;/A&gt;is not a new area for the PCAOB. Auditing Standard No. 12, "Identifying and 
Assessing Risks of Material Misstatement," currently states that "the auditor 
should consider performing . . . procedures and the extent to which the 
procedures should be performed [to] obtain an understanding of compensation 
arrangements with senior management, including incentive compensation 
arrangements, changes or adjustments to those arrangements, and special 
bonuses."&lt;/P&gt;
&lt;P&gt;The increased scrutiny would not be limited to just reviewing more documents. 
The proposed amendments also would require the auditors to consider contacting 
persons who are involved in executive-compensation decisions but not in 
financial audits&amp;nbsp;- such as the compensation committee chair, the outside 
compensation consultant, and human-resources personnel&amp;nbsp;- to better 
understand the company's executive-compensation structure. Auditing procedures 
would also target the authorization and approval process for executive 
perquisites and reimbursement arrangements.&lt;/P&gt;</description>
      <link>http://www.itproductivity.org/Salary.htm</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Tue, 13 Mar 2012 09:50:37 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2012:3B80C223-6678-469F-8EA4-CB485D394ECE.40981.4063014352</guid>
      <category>salary</category>
      <category>compensation</category>
      <category>budgets</category>
      <category>cio</category>
    </item>
    <item>
      <title>Security breaches can go un-detected for a lomg time</title>
      <description>&lt;P align=center&gt;&lt;A href="http://www.itproductivity.org/security.htm"&gt;&lt;IMG 
border=0 alt="Security Breaches" vspace=5 align=right 
src="http://www.itproductivity.org/images/securitymanual.gif"&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Over 90 percent of &lt;A href="http://www.itproductivity.org/security.htm"&gt;data 
breaches &lt;/A&gt;are the result of external attacks and almost 60 percent of 
organizations discovered them months or years later, Verizon said in a report 
released at the RSA security conference.&lt;/P&gt;
&lt;P&gt;According to the report, the use of default or stolen credentials was one of 
the primary methods that attackers used to gain access to data in 2011. Some 
organized crime groups have automated their attacks to scan for very specific 
ports, like those for remote desktop, pcAnywhere and similar products, and then 
they try to log in with common or stolen passwords.&lt;/P&gt;
&lt;P&gt;This problem is common with small businesses that outsource the 
administration of their IT systems to third parties who offer remote support. 
These organizations should implement some type of access control for remotely 
accessible systems, like restricting which IPs are allowed to connect to 
them.&lt;/P&gt;
&lt;P&gt;Web-based attacks like SQL injection have a lower frequency and didn't even 
make the top 10 list on the annual report that will be published later this 
year, Baker said. The rate of SQL injection attacks is usually much higher for 
financial services organizations.&lt;/P&gt;
&lt;P&gt;Janco's&amp;nbsp;&lt;A href="http://www.itproductivity.org/security.htm"&gt;Security 
Manual &lt;/A&gt;for the Internet and Information Technology is over 240 pages in 
length.&amp;nbsp; The template is compliant with ISO 27000 (formerly ISO 17799), 
Sarbanes-Oxley, Patriot Act and HIPAA and includes a PCI DSS Audit program. &lt;/P&gt;
&lt;P align=center&gt;&lt;A 
href="http://www.itproductivity.org/session/add_product.aspx?catalog=194"&gt;&lt;IMG 
border=0 alt=order 
src="http://www.itproductivity.org/images/Order_red.gif"&gt;&lt;/A&gt;&amp;nbsp;&amp;nbsp; &lt;A 
href="http://www.itproductivity.org/register_security_policies_procedures_template.ASP"&gt;&lt;IMG 
border=0 alt=Download 
src="http://www.itproductivity.org/images/Download_Red.gif"&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;One problem that doesn't seem to improve from year to year has to do with &lt;A 
href="http://www.itproductivity.org/security.htm"&gt;breach discovery&lt;/A&gt;. It takes 
the majority of organizations months to discover a breach and some of them even 
take years.&lt;/P&gt;</description>
      <link>http://www.itproductivity.org/security.htm</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Thu, 01 Mar 2012 14:08:53 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2012:2A6CC11C-1156-422F-AEA5-63049CB372F9.40969.544692037</guid>
      <category>security</category>
      <category>identity theft</category>
      <category>computers</category>
      <category>sensitive Information</category>
      <category>breach</category>
    </item>
    <item>
      <title>Cybersecurity now a CEO concern</title>
      <description>&lt;P align=center&gt;&lt;A href="http://www.itproductivity.org/security.htm"&gt;&lt;IMG 
border=0 alt="Security Procedures" vspace=5 align=middle 
src="http://www.itproductivity.org/images/security.gif" width=85 
height=110&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="http://www.itproductivity.org/security.htm"&gt;Cybersecurity&lt;/A&gt; is not 
just an IT issue; that is not how your adversaries are looking at it. Using IT 
happens to be the way they get into networks. Technology is only one aspect. 
Organizations need to look at it as a foreign intelligence collection effort. 
Bottom line, cybersecurity needs to be top-down driven, from the head of the 
agency or a CEO on down. Only then will the enterprise be adequately protected. 
&lt;/P&gt;
&lt;H1 align=center&gt;&lt;A 
href="http://www.itproductivity.org/session/add_product.aspx?catalog=194"&gt;&lt;IMG 
border=0 hspace=10 alt="Security Manual Template" vspace=10 align=middle 
src="http://www.itproductivity.org/images/securitymanual.gif" width=240 
height=254&gt;&lt;/A&gt;&lt;/H1&gt;</description>
      <link>http://www.itproductivity.org/security.htm</link>
      <dc:creator>Webmaster</dc:creator>
      <pubDate>Mon, 27 Feb 2012 07:59:00 -0600</pubDate>
      <guid isPermaLink="false">tag:www.tristana.org,2012:83CCE50E-0601-4A67-B80B-C170F6064AD7.40966.2891341667</guid>
      <category>security</category>
      <category>identity theft</category>
      <category>computers</category>
      <category>sensitive Information</category>
      <category>cybersecurity</category>
    </item>
  </channel>
</rss>

