Norman Marks, of the Institute of Internal Auditors, likes to hire auditors who can think.
You should too.
How does he do it?
Norman Marks, of the Institute of Internal Auditors, likes to hire auditors who can think.
You should too.
How does he do it?
Filed under Audit, Employment, How to...
Do you perform appropriate population validation of the data you rely on in an audit?
Population validation is simply gaining confidence that the data you are using in your audit contains all the appropriate data for your audit objectives (e.g., your server list includes all the SOX servers).
For the difference between population validation and data validation, see Why You Must Validate Data.
So how do you do population validation? Let’s look at an example…
Twitter said that it was hacked again on Friday, 2/1/13, and attackers gained access to 250,000 accounts and passwords.
Twitter says the passwords were encrypted, the intrusion was limited, and and everyone’s taxes are going down soon (okay, I was kidding about the last one). It’s always hard to sort out what is true and how much of the truth is told, so regardless of what Twitter says, change your password.
Every once in a while I question security controls, and the latest one I questioned was security questions.
I’m talking about those questions that financial sites like banking and credit card sites ask you when you log in. Not the ones used to reset your password (although this post applies to them too).
No, this won’t be a rant about the stupid questions that sites give you to chose from, such as your mother’s maiden name or what is your favorite color. I gave up questioning those issues long ago.
Filed under Security, Security Scout
If you have any idea of who Bruce Schneier is, you have to check out http://www.schneierfacts.com/. It is useless funny facts about Bruce a la Chuck Norris. Try not to LOL.
Filed under Humor/Irony, Security
Using great titles and intro sentences are so critical to the success of your blog. Not only do they grab the attention of your reader, great titles and introductory sentences seduce search engines like Google into sending you even more readers.
Ask a Question
This post is the parking lot for questions that don’t necessarily relate to one of my posts.
If you want to ask a question, post it here.
Continue reading →
Share this:
Like this:
48 Comments
Filed under Audit, Security, Technology
Tagged as ask, comment, parking lot, question