From the course: ISC2 Systems Security Certified Practitioner (SSCP) (2024) Cert Prep

Unlock this course with a free trial

Join today to access over 24,900 courses taught by industry experts.

Compliance monitoring

Compliance monitoring

- [Instructor] Security professionals also perform monitoring in an effort to ensure that systems and applications remain compliant with various standards. Compliance monitoring occurs for two different reasons. First, organizations may wish to ensure that their systems and applications comply with internal standards, baselines, and policies. If the organization has a standard requiring the use of current anti-malware software on all systems, compliance monitoring can verify that the software is present on every device in the organization, and that each device has recently updated signatures. The organization should also have policies around log management, including log preservation and integrity requirements. The monitoring system should be able to track compliance with all of those policies. Second, organizations may use compliance monitoring to verify that they remain compliant with laws, regulations, and contractual obligations. Organizations handling credit card data, for…

Contents