Leading lights in IT Security join forces to deliver employee accountability in the European arena
By Tara Hutton
March 3, 2009
Baronscourt, the market leading provider of IT Governance, Risk and Compliance solutions, has announced a partnership with global information security company, Comsec Consulting.
The threat of the unwitting employee to corporate IT security was highlighted in stark relief in 2008; 79% of all reported data security breaches were directly attributed to human error, an inability to follow policy and procedure. IT Security resources have traditionally been focused on defending systems against the malicious outsider, and it seems that educating employees as to their responsibilities on data guardianship, a core element of any IT Security and compliance project, fell by the wayside.
A recent partnership between two leading companies at both ends of the IT Security spectrum seeks to address the issue of user awareness and accountability in the Dutch market. By combining the knowledge and expertise of Comsec, and the innovative technology of MetaCompliance from Baronscourt, the partnership aims to close the circle of best practice IT Security and Compliance by combining Policy, procedure and process with technology, and IT security aware employees.
Adding value with Awareness and Accountability
Henk Van Der Heijden, Managing Director of ComSec’s Netherlands operation, has a wealth of experience in the field of IT Security, and recognises that effective User Awareness programmes have, until now, been the missing link in most organisations IT security. He feels that the Baronscourt ideology of placing the onus of IT security at the foot of the employee, where it belongs, will add significant value to ComSec’s comprehensive IT Compliance, Governance and security offering.
The initial focus for the partnership will be the Dutch healthcare sector, as Van Der Heijden believes that this is an area in which organisations have yet to grasp either the importance of creating an IT Security culture among employees, or the negative impact that a lack of user awareness can have on data security. The combined expertise of the partners will help organizations seamlessly integrate User Awareness into their current security programs, to ensure the integrity of critical healthcare IT systems and patient sensitive information.
Henk van der Heijden feels that the solution offered by Baronscourt is different than any of the other products offered in this market “…in the sense that it is very pragmatic and organisation friendly. It offers a range of options to include any kind of way of working that an organization wishes and that the culture allows. Whether it is very formal or very loosely, all is supported. As no one organization is the same, the flexibility offered to tailor the product to the organization is on of the major benefits of this solution. In addition the feature to handle USB-sticks and the policy around it, is a simple but effective way to deal with this issue that companies are struggling with nowadays.”
Anna Kelpie, Country Manager with Baronscourt, feels that ComSec’s proven track record in the development of IT security strategies and processes will be strengthened by the addition of MetaCompliance. The solutions ability to guarantee user accountability and deliver increased levels of user awareness will allow organizations to quickly and effectively implement the strategies, processes and procedures recommended by Comsec:
“The partnership with Comsec will accelerate Baronscourt’s market penetration in the European market which is part of our future growth strategy. Comsec and Baronscourt will complement each other significantly and will enable customers to implement premium Governance, Risk and Compliance programs. There is an undeniable need within the market right now to reduce risk, manage and demonstrate compliance and have clear visibility into corporate governance, and this strategic alliance will have a dramatic impact in assisting organisations to achieve these mandatory requirements that are placed on their business”
MetaCompliance delivers:
- User accountability via automated self certification;
- The ability to elicit and enforce 100% response from all user types, including mobile and non electronic workers;
- Automated risk assessments and survey for the real time measurement of IT security posture;
- Management of accountability and awareness around real time computer events;
- Demonstrable compliance via MetaCompliance secure audit and reporting;
- The automated repeatable processes that are the key to sustainability of compliance.
More News