Note: this blog is a mirror of my HP Labs Blog, on the same topic, accessible at: http://h30507.www3.hp.com/t5/Research-on-Security-and/bg-p/163

Sunday, July 4, 2010

Part II: Looking for Case studies and information about (Security) Compliance Management Processes with Organisations

In a previous post of mine, I wrote that: “In the context of the HP Labs Security and Identity Analytics projects, I am interested in exploring how to use modelling and simulations to support decision makers in making strategic decisions on compliance management, within their organisations. …”

Thanks to all the people who provided their input and feedback.

I would like to clarify also a few points:

1. I am indeed looking for different case studies involving compliance management, e.g. for SOX, PCI, etc.

2. My specific interest is on the actual organisational processes and steps that have been put in place to deal with the compliance requirements.

The goal is to use our modelling and simulation approach to represent these processes and make further deductions, based on what-if analysis.

Of course, public case studies and/or non-confidential information is welcome in the context mentioned above.


--- Posted by Marco Casassa Mont (here and here) ---

--- NOTE: use this mirror blog if you prefer posting on an external blog site ---

--- NOTE: my original HP blog can be found here ---

No comments: