Jump to content
Microsoft Windows Bulletin Board

IT security audit providers


Recommended Posts

Guest Sean Curry
Posted

Greetings,

 

My company is preparing to do a first ever IT security audit and we are

currently looking for potential providers to give us an unbiased "look in

the mirror" does anyone here have any suggestions or recommendations for a

good audit firm?

 

Thanks,

 

--Sean Curry

Guest S. Pidgorny
Posted

Whoever you pick make sure you have quality/outcome acceptability criteria.

If you have an internal security team, make them run a similar activity in

parallel as well as a chance to challenge some of the outcomes. Otherwise

the audit will leave you knowing not much more than before it.

 

--

Svyatoslav Pidgorny, MS MVP - Security, MCSE

-= F1 is the key =-

 

* http://sl.mvps.org * http://msmvps.com/blogs/sp *

 

"Sean Curry" <scurry0@comcast.net> wrote in message

news:OrF4NQowHHA.3444@TK2MSFTNGP05.phx.gbl...

> Greetings,

>

> My company is preparing to do a first ever IT security audit and we are

> currently looking for potential providers to give us an unbiased "look in

> the mirror" does anyone here have any suggestions or recommendations for

> a good audit firm?

>

> Thanks,

>

> --Sean Curry

>

>

>

Guest Steve Riley [MSFT]
Posted

Remember, the purpose of an audit is to measure how well (or not) you're

actually complying with your own policies. In other words, an audit answers

the question, "Are you doing the things that you say you should be doing?"

Without a security policy, there's very little that an audit can do for

you -- other than compare your (non-)performance against someone else's

checklist.

 

Steve Riley

steve.riley@microsoft.com

http://blogs.technet.com/steriley

 

 

"Sean Curry" <scurry0@comcast.net> wrote in message

news:OrF4NQowHHA.3444@TK2MSFTNGP05.phx.gbl...

> Greetings,

>

> My company is preparing to do a first ever IT security audit and we are

> currently looking for potential providers to give us an unbiased "look in

> the mirror" does anyone here have any suggestions or recommendations for

> a good audit firm?

>

> Thanks,

>

> --Sean Curry

>

>

>

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...