Compliance

6/14/2022 Compliance

Mandatory Manual Reviews and Audits – PCI Requirements.

Digital Edge's Compliance team has noticed that organizations and IT/compliance groups lack understanding of mandates for scheduled reviews and audits.

Each cybersecurity standard or framework has its own unique requirements. This article provides information on minimal required reviews and audits by PCI standard.

 

 

6/14/2022 Compliance

Mandatory Manual Reviews and Audits – ISO 27001 Requirements.

Digital Edge's Compliance team has noticed that organizations and IT/compliance groups lack understanding of mandates for scheduled reviews and audits.

Each cybersecurity standard or framework has its own unique requirements. This article provides information on minimal required reviews and audits by NIST CSF standard.

6/14/2022 Compliance

Mandatory Manual Reviews and Audits – NIST CSF Requirements.

Digital Edge's Compliance team has noticed that organizations and IT/compliance groups lack understanding of mandates for scheduled reviews and audits.

Each cybersecurity standard or framework has its own unique requirements. This article provides information on minimal required reviews and audits by NIST CSF standard.

6/14/2022 Compliance

Mandatory Manual Reviews and Audits – HITRUST Requirements.

Digital Edge's Compliance team has noticed that organizations and IT/compliance groups lack understanding of mandates for scheduled reviews and audits.

Each cybersecurity standard or framework has its own unique requirements. This article provides information on minimal required reviews and audits by HITRUST standard.

 

5/20/2022 Compliance

FundCount has partnered with Digital Edge in the AWS realm to provide a wide range of DevOps and SysOps services

FundCount has partnered with Digital Edge in the AWS realm to provide a wide range of DevOps and SysOps services to FundCount SaaS clients. Digital Edge successfully collaborated with FundCount to architect, deploy, and support the award-winning Accounting, Analysis, and Reporting software hosted on AWS.

4/25/2022 Compliance

The GDPR Jurisdiction Rule You Probably Don’t Know About

If your company is based in the EU, then the question of whether the GDPR applies to you is easy; it does.

But that is not all. 

4/7/2022 Compliance

HITRUST Certification

Why HITRUST?  

HITRUST develops risk and compliance management frameworks, assessment, and assurance methodologies, maintains them, and provides access to them, being in collaboration with the leaders of information security and risk management, both from the public and private sectors. HITRUST aims to fill the gaps still not addressed by some regulations.

HITRUST Common Security Framework addresses security, privacy, and regulatory challenges organizations face. HITRUST includes and cross-references numerous globally recognized standards, follows a risk-based approach, and creates the options for a well-orchestrated unified method of managing data protection compliance. This makes HITRUST highly beneficial for those organizations seeking to safeguard the data, but this also makes HITRUST not easily implementable for those businesses that still require staff training and bringing all the processes to higher standards to implement HITRUST. Digital Edge is the right partner in achieving this goal.

3/22/2022 Compliance

OSPAR Certification

Why OSPAR? 

Financial institutions rely heavily on outsourced service providers (OSPs) to assist with key business objectives.  

As financial institutions are ultimately responsible for the service provided to their customers, OSPs must comply with the standards and controls accepted within the financial industry.  

The Association of Banks in Singapore has established the Guidelines on Control Objectives and Procedures for all OSPs desiring to work with the numerous financial institutions in Singapore. To demonstrate your organization’s ability to meet these guidelines, an Outsourced Service Provider Audit Report (OSPAR) attestation is mandatory. Without an OSPAR attestation, your organization will not be able to provide services to the rapidly growing number of financial institutions in Singapore.  

Digital Edge will ensure that your organization will receive an OSPAR attestation as proof that it has implemented adequate cybersecurity safeguards to maintain the governance and consistency required. With OSPAR, your company will be ready to conduct business, and guarantee the security of your client’s critical information.

1/6/2022 Compliance

Digital Edge Supported with OSPAR Certification

Digital Edge is proud to announce that we successfully assisted and obtained an OSPAR certification for one of our FinTech clients. 

What is OSPAR? OSPAR (Outsourced Service Providers Audit Report) is a report that can only be issued by one out of 5 accredited auditors. It is a critical pre-requisite for the 3rd party vendors, to demonstrate their adherence to stringent guidelines & best practices if they wish to conduct business in Singapore.  

12/8/2021 Compliance

Cyber Warfare: Actions and Reactions

Usually my blog posts are focused on the arguably mundane practices of cybersecurity governance. Today, though, I would like to get into something a bit spicier. Right now, as I write this, Russia has about 90,000 troops amassed at the Ukrainian border, and China has been harassing Taiwanese airspace for months. Some kind of aggressive action, possibly cyber-related, seems very possibly forthcoming; and with it, likely a response in kind.
 
It’s a known fact that Russia, China, North Korea, Iran and others engage in regular cyber attacks against the other countries including the US. We see this all the time. What I think is unclear to most people are the rules governing the responses to such attacks. Below I discuss a broad overview of how cyber attacks are handled by governments around the world.
 
First off, you should know that the international law around the rights self defense of a state actor is extremely murky and highly disorganized. Furthermore, different countries disagree on the interpretation of laws that exist. That being said, there are some general rules that are followed by responsible governments.