Home > Midmarket CIO Tips > > Regulatory compliance and critical system protection
CIO Midmarket Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 


Regulatory compliance and critical system protection


Liebert Corporation
03.25.2005
Rating: --- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


This tip originally appeared on SearchDataCenter.com, a sister site of SearchSMB.com.


The implications of losing power to your regulatory compliance efforts may seem secondary, but the fact is, no matter how secure you are about the rest of your infrastructure, lose power and it's over. There are various laws, regulations, and international conventions that impact the protection of mission-critical networks. This chart, extracted from Libert Corporation's white paper titled Regulatory Compliance and Critical System Protection, details the specifics of each law or regulation and how losing power will impact your data center.

Regulation Relevant Requirements Power Implications
HIPAA Where patient data is recorded, stored or transmitted there must be a record of the change and an associated permission linked to a document that has been signed by the patient Power interruptions or disturbances can break the chain of integrity. Life safety data must be continuously available
FDA 21 CFR 11 Outlines criteria for accepting electronic records and signatures and for documenting and validating authroized change processes to systems and software involved in the creation of electronic documents Requires formal risk evaluation and compliance with "current good practices." Secondary power for manufacturing considered good current practice
SEC 17 CFR 240 Establishes controls and procedures for electronic securities transactions Power failures or disturbances can result in an organization being unable to verify the existence or accuracy of transaction histories
Sarbanes-Oxley Guidelines for corporate governance and oversight of accounting and audit practices as well as financial record retention Power interruptions or disturbances can break chain of integrity data
Basel II Provides direction for managing capital risk, supervisory interaction, and publich risk disclosure for large banks Power systems must provide protection across far flung enterprises
Gramm-Leach-Bliley Assure privacy of customer data for financial institutions Breaches of data security will result in regulatory scrutiny
Clinger-Cohen Act Regulates firms providing IT products and services to the U.S. government Requirements may emerge regarding data availability and security


Do you have comments on this tip? Let us know.


Rate this Tip
To rate tips, you must be a member of SearchCIO-Midmarket.com.
Register now to start rating these tips. Log in if you are already a member.




Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
HIPAA compliance for the midmarket
Compliance conundrum: Test your know-how
Compliance: Don't let your guard down
Health care new vertical sweet spot for security vendors
Compliance regulations: Understanding the dirty dozen
Midmarket CIOs turning to log management for compliance
Regulatory compliance: Old methods just money down the drain
Spending on Sarbanes-Oxley software climbs
E-mail policy
SMBs respond to HIPAA demands
SEC considers Sarbanes-Oxley delay for SMBs

Sarbanes-Oxley Act (SOX) compliance
Compliance conundrum: Test your know-how
Compliance: Don't let your guard down
SOX first-year costs lower than expected, study says
Compliance regulations: Understanding the dirty dozen
SOX extension granted, but auditor role still unclear
SearchCIO-Midmarket.com quizzes
Compliance strategies for the midmarket
House votes to give small companies more time on Sarbanes-Oxley
Sarbanes-Oxley compliance for SMBs: How much do you know?
Sarbanes-Oxley compliance for SMBs: Quiz answers

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2007 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts