Welcome to ControlScada.com we provide FREE SCADA security control and audit. We also provide free audit program, checklist and template based on ISO standard such as ISO 177999/ISO 27001. Please register at this site and find global networking with security and audit professional around the world

Why we need to implement User Naming Convention based on ISO27001

All user accounts in use within organization should be domain accounts and not local accounts held on each workstation's local user account database. The benefit of implementing standard user naming convention are:

1. Enable administrator of the domain to better manage, support and secure the user accounts.
2. Facilitate ease of management and support

Project Management Evolutionary Delivery Checklist

Project Management Evolutionary Delivery Checklist

- Have you planned for several releases of the software before the full, final capabilities are present?

- Does the first release contain the germ of the program, the seed from which the rest of the program will be developed?

- Will the first release be made as early as possible to get the ball rolling?

- Is the first release usable, at least at some minimal level?

- Have you defined what each evolutionary stage will deliver as best as you can in the hazy dawn of the project?

- Does each release add significant capabilities?

Project Management Data Models and Entity Descriptions Checklist

The following guidelines provide a basic checklist for reviewing data models and entity descriptions.
Basic review of model
- Ensure each entity has a singular noun as a name.
- Ensure the diagram is well laid out. Topology guidelines include:
- relationship lines as direct as possible, but retaining clarity;
- master entities higher in the diagram than their details (so avoiding upward pointing relationship arrows);
- minimum crossing lines.
- The diagram should have no visible storage connotations, e.g.:
- indexes and arrays should not be shown unless logically significant;
- business relationships as opposed to physical access paths should be defined.

Review of business implications
Relationship review

Risk Register Template for IT & Project Management

Download Free Risk Register Template for IT & Project Management
Risk Register Template for IT & Project Management
1. BASIC RISK INFORMATION
Risk Number: Provide a unique identifier for risk

Risk Description / Risk Event Statement: A risk event statement states (i) what might happen in the future and (ii) its possible impact on the project. "Weather" is not a risk event statement. "Bad weather may delay the project" is a risk event statement.

Responsible: Name or title of team member responsible for risk

Date Reported

PCI DSS 1.1 Audit Work Program Templates Free Download

PCI DSS 1.1 Audit Work Program Templates Free Download
PCI DSS 1.1 Audit Work Program Templates Free Download

Control 1 - All cardholder-entered PINs are processed in equipment that conforms to the requirements for Tamper-Resistant Security Modules (TRSMs). PINs must never appear in the clear outside of a TRSM

Control 2 - All cardholder PINs processed online are encrypted and decrypted using an approved cryptographic technique that provides a level of security compliant with international and industry standards.

Syndicate content

User login

Who's new

  • Heesbedsbainc
  • saebabe
  • fawaz
  • jtheobald
  • Keith

Who's online

There are currently 0 users and 1 guest online.