As information technology has assumed a greater and greater role in the functions of modern business, it has become obvious that instituting reliable security measures is critical to protecting valuable information assets.
CCCL's information security and control services include the following:
- Information security risk assessment;
- Information security strategy development and review;
- Information security standards, policies, frameworks - design and implementation;
- ISO 17799 reviews (the new international standard for information security management - used to be BS7799), design and implementation of appropriate controls; ISO 17799 training;
- IT governance consultancy - advice to senior management on the actions required to satisfy their legal obligations;
- Controls to prevent computer fraud - risk assessment and controls design;
- Specification, review, implementation and testing of computer system controls, operating system controls, networking controls, IT operations controls, change management controls, etc.;
- Specification, design, implementation and testing of PKI systems;
- Pen testing of applications and networks
- Information security benchmarking against industry best practices;
- Disaster contingency planning - from strategy to testing;
- SOX implementation.