<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>CSOONLINE.com - Audit</title>
    <link>http://www.csoonline.com/</link>
    <description />
    <language>en_US</language>
    <copyright>(c) Copyright 2008 CXO Media, Inc. All Rights Reserved.</copyright>
    <pubDate>Fri, 08 Aug 2008 00:55:00 GMT</pubDate>
    <dc:date>2008-08-08T00:55:00Z</dc:date>
    <dc:language>en_US</dc:language>
    <dc:rights>(c) Copyright 2008 CXO Media, Inc. All Rights Reserved.</dc:rights>
    <item>
      <title>Former ISACA Head: SAS 70 Changes Coming</title>
      <link>http://www.csoonline.com/article/439428/Former_ISACA_Head_SAS_Changes_Coming</link>
      <description>Marios Damianides, a partner in Ernst &amp; Young's technology and security risk services group and past president of ISACA's board of directors, expects changes for SAS 70 and more collaboration between security and non-security management groups.</description>
      <pubDate>Fri, 25 Jul 2008 04:00:00 GMT</pubDate>
      <author>Bill Brenner</author>
      <guid>http://www.csoonline.com/article/439428/Former_ISACA_Head_SAS_Changes_Coming</guid>
      <dc:date>2008-07-25T04:00:00Z</dc:date>
    </item>
    <item>
      <title>FUD Watch | Vendor Hype Escalates Over PCI Deadline</title>
      <link>http://www.csoonline.com/article/413963/FUD_Watch_Vendor_Hype_Escalates_Over_PCI_Deadline</link>
      <description>Monday is the day merchants must be in compliance with PCI DSS Requirement 6.6. That means the security vendor PR machine is in overdrive.</description>
      <pubDate>Fri, 27 Jun 2008 04:00:00 GMT</pubDate>
      <author>Bill Brenner</author>
      <guid>http://www.csoonline.com/article/413963/FUD_Watch_Vendor_Hype_Escalates_Over_PCI_Deadline</guid>
      <dc:date>2008-06-27T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Dual Threats: How to Build Expertise, Certifications in Multiple Subjects</title>
      <link>http://www.csoonline.com/article/394863/Dual_Threats_How_to_Build_Expertise_Certifications_in_Multiple_Subjects</link>
      <description>Four professionals discuss the value of MBAs, CFAs and other certifications and degrees from beyond the security field. Should you become a 'dual threat'?</description>
      <pubDate>Wed, 18 Jun 2008 04:00:00 GMT</pubDate>
      <author>Lauren Gibbons Paul</author>
      <guid>http://www.csoonline.com/article/394863/Dual_Threats_How_to_Build_Expertise_Certifications_in_Multiple_Subjects</guid>
      <dc:date>2008-06-18T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Security Agency Calls For EU Laws on Breach Disclosure</title>
      <link>http://www.csoonline.com/article/376817/Security_Agency_Calls_For_EU_Laws_on_Breach_Disclosure</link>
      <description>A European Union-wide advisory body this week called for security breach disclosure regulations tougher than those in the U.S. as a step toward raising awareness of the seriousness of security threats.</description>
      <pubDate>Mon, 02 Jun 2008 04:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/376817/Security_Agency_Calls_For_EU_Laws_on_Breach_Disclosure</guid>
      <dc:date>2008-06-02T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Safe Document Transfer: How to Secure the Paper Chain</title>
      <link>http://www.csoonline.com/article/221323/Safe_Document_Transfer_How_to_Secure_the_Paper_Chain</link>
      <description>Learn how your sensitive records can get from dank, dusty basement to cavernous, temperature-controlled storage facility without incident. Rule number one: Don't think!</description>
      <pubDate>Wed, 27 Feb 2008 05:00:00 GMT</pubDate>
      <author>Scott Berinato</author>
      <guid>http://www.csoonline.com/article/221323/Safe_Document_Transfer_How_to_Secure_the_Paper_Chain</guid>
      <dc:date>2008-02-27T05:00:00Z</dc:date>
    </item>
    <item>
      <title>What I Learned From the Top Five Security Events of 2007</title>
      <link>http://www.csoonline.com/article/216853/What_I_Learned_From_the_Top_Five_Security_Events_of_</link>
      <description>Prat Moghe of Tizor Systems draws five key lessons from five data breaches.</description>
      <pubDate>Mon, 03 Dec 2007 05:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/216853/What_I_Learned_From_the_Top_Five_Security_Events_of_</guid>
      <dc:date>2007-12-03T05:00:00Z</dc:date>
    </item>
    <item>
      <title>The Six-Figure Software Licensing Mistake</title>
      <link>http://www.csoonline.com/article/221357/The_Six_Figure_Software_Licensing_Mistake</link>
      <description>Even the best security staff is not above making costly mistakes</description>
      <pubDate>Wed, 21 Nov 2007 05:00:00 GMT</pubDate>
      <author>Anonymous</author>
      <guid>http://www.csoonline.com/article/221357/The_Six_Figure_Software_Licensing_Mistake</guid>
      <dc:date>2007-11-21T05:00:00Z</dc:date>
    </item>
    <item>
      <title>Harland Clarke Rechecks Risk Management</title>
      <link>http://www.csoonline.com/article/221350/Harland_Clarke_Rechecks_Risk_Management</link>
      <description>New security program adds more systematic processes for evaluating, prioritizing and mitigating risk</description>
      <pubDate>Tue, 16 Oct 2007 04:00:00 GMT</pubDate>
      <author>Mary Brandel</author>
      <guid>http://www.csoonline.com/article/221350/Harland_Clarke_Rechecks_Risk_Management</guid>
      <dc:date>2007-10-16T04:00:00Z</dc:date>
    </item>
    <item>
      <title>All About the PCI Data Security Standard</title>
      <link>http://www.csoonline.com/article/221189/All_About_the_PCI_Data_Security_Standard</link>
      <description>More than just another data-security standard, the PCI program is corporate America's most ambitious effort yet to prove that it can self-regulate. But even a standard with everything going for it might not be enough to stop the loss of credit card data.</description>
      <pubDate>Thu, 12 Apr 2007 04:00:00 GMT</pubDate>
      <author>Sarah D. Scalet</author>
      <guid>http://www.csoonline.com/article/221189/All_About_the_PCI_Data_Security_Standard</guid>
      <dc:date>2007-04-12T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Employee Hotline Calls Usually Warrant Investigation</title>
      <link>http://www.csoonline.com/article/221110/Employee_Hotline_Calls_Usually_Warrant_Investigation</link>
      <description>Whistleblowers typically aren't whistling Dixie</description>
      <pubDate>Mon, 01 Jan 2007 05:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/221110/Employee_Hotline_Calls_Usually_Warrant_Investigation</guid>
      <dc:date>2007-01-01T05:00:00Z</dc:date>
    </item>
    <item>
      <title>Oui, Virginia, There Is a Hell</title>
      <link>http://www.csoonline.com/article/221011/Oui_Virginia_There_Is_a_Hell</link>
      <description>Wherein our intrepid American CISO sits before a European audit committee?</description>
      <pubDate>Fri, 01 Sep 2006 04:00:00 GMT</pubDate>
      <author>Paul Raines</author>
      <guid>http://www.csoonline.com/article/221011/Oui_Virginia_There_Is_a_Hell</guid>
      <dc:date>2006-09-01T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Payment Card Industry Compliance</title>
      <link>http://www.csoonline.com/article/220984/Payment_Card_Industry_Compliance</link>
      <description>Ignoring the PCI Data Security Standard is risky business. Heres how you can prepare for compliance.</description>
      <pubDate>Thu, 10 Aug 2006 04:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/220984/Payment_Card_Industry_Compliance</guid>
      <dc:date>2006-08-10T04:00:00Z</dc:date>
    </item>
    <item>
      <title>The CSO's First Security Assessment</title>
      <link>http://www.csoonline.com/article/220987/The_CSO_s_First_Security_Assessment</link>
      <description>The first security assessment at my new employer wasnt supposed to be personal. It just ended up that way.</description>
      <pubDate>Tue, 01 Aug 2006 04:00:00 GMT</pubDate>
      <author>Anonymous</author>
      <guid>http://www.csoonline.com/article/220987/The_CSO_s_First_Security_Assessment</guid>
      <dc:date>2006-08-01T04:00:00Z</dc:date>
    </item>
    <item>
      <title>How to Use Metrics</title>
      <link>http://www.csoonline.com/article/220980/How_to_Use_Metrics</link>
      <description>CSOs generate security data every day. Knowing what to look for and how to analyze it can spell success for a security operation and the organization it serves.</description>
      <pubDate>Tue, 01 Aug 2006 04:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/220980/How_to_Use_Metrics</guid>
      <dc:date>2006-08-01T04:00:00Z</dc:date>
    </item>
    <item>
      <title>The Seven Deadly Sins of  Records Retention</title>
      <link>http://www.csoonline.com/article/220939/The_Seven_Deadly_Sins_of_Records_Retention</link>
      <description>(And how to avoid them)</description>
      <pubDate>Sat, 01 Jul 2006 04:00:00 GMT</pubDate>
      <author>Sarah D. Scalet</author>
      <guid>http://www.csoonline.com/article/220939/The_Seven_Deadly_Sins_of_Records_Retention</guid>
      <dc:date>2006-07-01T04:00:00Z</dc:date>
    </item>
  </channel>
</rss>

