<?xml version="1.0" encoding="iso-8859-1" ?>
<rss version="2.0" xmlns:s="http://resources.bnet.com/">
<channel>
	<title><![CDATA[finance and information security Resources | BNET]]></title>
	<link><![CDATA[http://resources.bnet.com/topic/finance+and+information+security.html]]></link>
	<description><![CDATA[White papers, case studies, business articles, and blog posts relating to finance and information security]]></description>
	<s:counts start="0" returned="9" found="9" />
	<language>en-us</language>
	<item>
		<title><![CDATA[Measuring ROI on Information Security]]></title>
		<link><![CDATA[http://blogs.bnet.com/intercom/?p=1335]]></link>
		<description><![CDATA[    Research indicatesÂ managers understand the valueÂ of managing information security risk and the importance of communicatingÂ that valueÂ in measurable terms to executives and stakeholders. But there's one question a lot of people are asking: why is it so difficult to determine ROI on information security? Christopher Hoff, ChiefÂ Architect of...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Tue, 27 Nov 2007 15:30:31 -0800</pubDate>
		<category domain="http://resources.bnet.com/topic/managerial+accounting.html"><![CDATA[Managerial Accounting]]></category>
		<category domain="http://resources.bnet.com/topic/finance.html"><![CDATA[Finance]]></category>
		<category domain="http://resources.bnet.com/topic/security.html"><![CDATA[Security]]></category>
		<category domain="http://resources.bnet.com/topic/roi%252ftco.html"><![CDATA[Roi/Tco]]></category>
		<category domain="http://resources.bnet.com/topic/roi.html"><![CDATA[ROI]]></category>
		<category domain="http://resources.bnet.com/topic/blog.html"><![CDATA[Blog]]></category>
		<category domain="http://resources.bnet.com/topic/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://resources.bnet.com/topic/lori+deschene.html"><![CDATA[Lori Deschene]]></category>
	</item>
	<item>
		<title><![CDATA[Aid to Industry: Training and Support for Audit, Risk Management and Information Security Specialists - Winter 2005/2005 Course Programme]]></title>
		<link><![CDATA[http://jobfunctions.bnet.com/abstract.aspx?docid=171395]]></link>
		<description><![CDATA[Deloitte Touche Tohmatsu aims to improve the effectiveness of Internal Audit and IT security at their clients by providing quality training and support to audit and information security professionals. Deloitte's courses provide these specialists with the skills necessary to reach the highest standards of performance in serving their organisation and...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Wed, 19 Oct 2005 00:00:00 -0700</pubDate>
		<category domain="http://resources.bnet.com/topic/audit.html"><![CDATA[Audit]]></category>
		<category domain="http://resources.bnet.com/topic/deloitte+touche+tohmatsu.html"><![CDATA[Deloitte Touche Tohmatsu]]></category>
		<category domain="http://resources.bnet.com/topic/finance.html"><![CDATA[Finance]]></category>
		<category domain="http://resources.bnet.com/topic/financial+accounting.html"><![CDATA[Financial Accounting]]></category>
		<category domain="http://resources.bnet.com/topic/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://resources.bnet.com/topic/management.html"><![CDATA[Management]]></category>
		<category domain="http://resources.bnet.com/topic/risk+management.html"><![CDATA[Risk Management]]></category>
		<category domain="http://resources.bnet.com/topic/security.html"><![CDATA[Security]]></category>
		<category domain="http://resources.bnet.com/topic/strategy.html"><![CDATA[Strategy]]></category>
		<category domain="http://resources.bnet.com/topic/training.html"><![CDATA[Training]]></category>
	</item>
	<item>
		<title><![CDATA[Information Security: Federal Deposit Insurance Corporation Needs to Sustain Progress]]></title>
		<link><![CDATA[http://jobfunctions.bnet.com/abstract.aspx?docid=147665]]></link>
		<description><![CDATA[The Federal Deposit Insurance Corporation FDIC relies extensively on computerized systems to support its financial and mission-related operations. As part of GAO's audit of the calendar year 2004 financial statements for the three funds administered by FDIC, this report asses the progress FDIC has made in correcting or mitigating information...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Sun, 01 May 2005 00:00:00 -0700</pubDate>
		<category domain="http://resources.bnet.com/topic/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://resources.bnet.com/topic/fdic.html"><![CDATA[FDIC]]></category>
		<category domain="http://resources.bnet.com/topic/federal+deposit+insurance+corporation.html"><![CDATA[Federal Deposit Insurance Corporation]]></category>
		<category domain="http://resources.bnet.com/topic/general+accounting+office.html"><![CDATA[General Accounting Office]]></category>
		<category domain="http://resources.bnet.com/topic/financial+accounting.html"><![CDATA[Financial Accounting]]></category>
		<category domain="http://resources.bnet.com/topic/financial+statements.html"><![CDATA[Financial Statements]]></category>
		<category domain="http://resources.bnet.com/topic/strategy.html"><![CDATA[Strategy]]></category>
		<category domain="http://resources.bnet.com/topic/finance.html"><![CDATA[Finance]]></category>
		<category domain="http://resources.bnet.com/topic/management.html"><![CDATA[Management]]></category>
	</item>
	<item>
		<title><![CDATA[Sarbanes-Oxley Compliance and How It Relates to the Visa USA Cardholder Information Security Program]]></title>
		<link><![CDATA[http://jobfunctions.bnet.com/abstract.aspx?docid=139430]]></link>
		<description><![CDATA[The Sarbanes-Oxley Act of 2002 SOX was written in the aftermath of the accounting scandals of Enron, WorldCom, MCI and similar companies to ensure that the financial reports submitted accurately reflect actual financial performance. The majority of the act is designed to tighten control over financial auditing and reporting. This...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Thu, 13 Jan 2005 00:00:00 -0800</pubDate>
		<category domain="http://resources.bnet.com/topic/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://resources.bnet.com/topic/sarbanes-oxley+compliance.html"><![CDATA[Sarbanes-Oxley Compliance]]></category>
		<category domain="http://resources.bnet.com/topic/visa+inc..html"><![CDATA[Visa Inc.]]></category>
		<category domain="http://resources.bnet.com/topic/financial.html"><![CDATA[Financial]]></category>
		<category domain="http://resources.bnet.com/topic/sarbanes-oxley+act.html"><![CDATA[Sarbanes-Oxley Act]]></category>
		<category domain="http://resources.bnet.com/topic/ambiron.html"><![CDATA[Ambiron]]></category>
		<category domain="http://resources.bnet.com/topic/sarbanes-oxley.html"><![CDATA[Sarbanes-Oxley]]></category>
		<category domain="http://resources.bnet.com/topic/regulatory+compliance.html"><![CDATA[Regulatory Compliance]]></category>
		<category domain="http://resources.bnet.com/topic/regulations.html"><![CDATA[Regulations]]></category>
		<category domain="http://resources.bnet.com/topic/financial+accounting.html"><![CDATA[Financial Accounting]]></category>
		<category domain="http://resources.bnet.com/topic/government.html"><![CDATA[Government]]></category>
		<category domain="http://resources.bnet.com/topic/finance.html"><![CDATA[Finance]]></category>
		<category domain="http://resources.bnet.com/topic/human+resources.html"><![CDATA[Human Resources]]></category>
		<category domain="http://resources.bnet.com/topic/policies+and+procedures.html"><![CDATA[Policies And Procedures]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">V</category>
		<category domain="tickers">V</category>
	</item>
	<item>
		<title><![CDATA[Financial Management Systems - Lack of Disciplined Processes Puts Implementation of HHS' Financial System at Risk]]></title>
		<link><![CDATA[http://jobfunctions.bnet.com/abstract.aspx?docid=148102]]></link>
		<description><![CDATA[In June 2001, the Secretary of HHS directed the department to establish a unified accounting system that, when fully implemented, would replace five outdated accounting systems. This report reviews HHS' ongoing effort to develop and implement the Unified Financial Management System UFMS and focuses on whether the agency has effectively...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Wed, 01 Sep 2004 00:00:00 -0700</pubDate>
		<category domain="http://resources.bnet.com/topic/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://resources.bnet.com/topic/financial.html"><![CDATA[Financial]]></category>
		<category domain="http://resources.bnet.com/topic/u.s.+department+of+health+and+human+services.html"><![CDATA[U.S. Department Of Health And Human Services]]></category>
		<category domain="http://resources.bnet.com/topic/financial+system.html"><![CDATA[Financial System]]></category>
		<category domain="http://resources.bnet.com/topic/general+accounting+office.html"><![CDATA[General Accounting Office]]></category>
		<category domain="http://resources.bnet.com/topic/accounting+system.html"><![CDATA[Accounting System]]></category>
		<category domain="http://resources.bnet.com/topic/financial+management.html"><![CDATA[Financial Management]]></category>
		<category domain="http://resources.bnet.com/topic/financial+planning.html"><![CDATA[Financial Planning]]></category>
		<category domain="http://resources.bnet.com/topic/finance.html"><![CDATA[Finance]]></category>
	</item>
	<item>
		<title><![CDATA[Information Security and Sarbanes-Oxley]]></title>
		<link><![CDATA[http://jobfunctions.bnet.com/abstract.aspx?docid=237234]]></link>
		<description><![CDATA[The Sarbanes-Oxley Act of 2002 inaugurated a new era of corporate governance and accountability. In forthright language, it made the need to link sound corporate governance with effective internal controls abundantly clear. However, the vital role played by information technology - and, by extension, information security - in internal controls...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Sun, 01 Feb 2004 00:00:00 -0800</pubDate>
		<category domain="http://resources.bnet.com/topic/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://resources.bnet.com/topic/internal+control.html"><![CDATA[Internal Control]]></category>
		<category domain="http://resources.bnet.com/topic/sarbanes-oxley+act.html"><![CDATA[Sarbanes-Oxley Act]]></category>
		<category domain="http://resources.bnet.com/topic/sarbanes-oxley.html"><![CDATA[Sarbanes-Oxley]]></category>
		<category domain="http://resources.bnet.com/topic/regulatory+compliance.html"><![CDATA[Regulatory Compliance]]></category>
		<category domain="http://resources.bnet.com/topic/corporate+governance.html"><![CDATA[Corporate Governance]]></category>
		<category domain="http://resources.bnet.com/topic/regulations.html"><![CDATA[Regulations]]></category>
		<category domain="http://resources.bnet.com/topic/security.html"><![CDATA[Security]]></category>
		<category domain="http://resources.bnet.com/topic/government.html"><![CDATA[Government]]></category>
		<category domain="http://resources.bnet.com/topic/financial+accounting.html"><![CDATA[Financial Accounting]]></category>
		<category domain="http://resources.bnet.com/topic/finance.html"><![CDATA[Finance]]></category>
		<category domain="http://resources.bnet.com/topic/human+resources.html"><![CDATA[Human Resources]]></category>
		<category domain="http://resources.bnet.com/topic/policies+and+procedures.html"><![CDATA[Policies And Procedures]]></category>
		<category domain="http://resources.bnet.com/topic/business+operations.html"><![CDATA[Business Operations]]></category>
		<category domain="http://resources.bnet.com/topic/corporate+law.html"><![CDATA[Corporate Law]]></category>
	</item>
	<item>
		<title><![CDATA[Risk Management in the Digital Age: A Call to Action for an Enterprise-Wide, Top-Down Approach to Digital Risk Management and Corporate Governance]]></title>
		<link><![CDATA[http://jobfunctions.bnet.com/abstract.aspx?docid=71235]]></link>
		<description><![CDATA[Digital risk management is about re-defining corporate governance to meet the new demands facing electronic business. New regulations and recently updated Federal Sentencing Guidelines create mandatory corporate governance environments where business leaders are potentially held personally responsible for privacy and information security violations that occur on their watch. Network-dependent enterprises...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Wed, 01 Jan 2003 00:00:00 -0800</pubDate>
		<category domain="http://resources.bnet.com/topic/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://resources.bnet.com/topic/risk+management.html"><![CDATA[Risk Management]]></category>
		<category domain="http://resources.bnet.com/topic/digitalrisk+advisors.html"><![CDATA[DigitalRisk Advisors]]></category>
		<category domain="http://resources.bnet.com/topic/corporate+governance.html"><![CDATA[Corporate Governance]]></category>
		<category domain="http://resources.bnet.com/topic/corporate+law.html"><![CDATA[Corporate Law]]></category>
		<category domain="http://resources.bnet.com/topic/financial+planning.html"><![CDATA[Financial Planning]]></category>
		<category domain="http://resources.bnet.com/topic/financial+services.html"><![CDATA[Financial Services]]></category>
		<category domain="http://resources.bnet.com/topic/strategy.html"><![CDATA[Strategy]]></category>
		<category domain="http://resources.bnet.com/topic/security.html"><![CDATA[Security]]></category>
		<category domain="http://resources.bnet.com/topic/business+operations.html"><![CDATA[Business Operations]]></category>
		<category domain="http://resources.bnet.com/topic/finance.html"><![CDATA[Finance]]></category>
		<category domain="http://resources.bnet.com/topic/management.html"><![CDATA[Management]]></category>
	</item>
	<item>
		<title><![CDATA[InsuranceFinancial Services Organization Has Success with Security Management]]></title>
		<link><![CDATA[http://jobfunctions.bnet.com/abstract.aspx?docid=52764]]></link>
		<description><![CDATA[This case study describes how Deloitte & Touche's Enterprise Risk Services practice helped a leading insurance and financial services organization define an appropriate information security architecture that would be a secure foundation for the emerging world of e-Business in the insurance industry. To maintain the company's long-term success, protection of...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Tue, 23 Oct 2001 00:00:00 -0700</pubDate>
		<category domain="http://resources.bnet.com/topic/business+operations.html"><![CDATA[Business Operations]]></category>
		<category domain="http://resources.bnet.com/topic/corporate+insurance.html"><![CDATA[Corporate Insurance]]></category>
		<category domain="http://resources.bnet.com/topic/deloitte+touche+tohmatsu.html"><![CDATA[Deloitte Touche Tohmatsu]]></category>
		<category domain="http://resources.bnet.com/topic/finance.html"><![CDATA[Finance]]></category>
		<category domain="http://resources.bnet.com/topic/financial+planning.html"><![CDATA[Financial Planning]]></category>
		<category domain="http://resources.bnet.com/topic/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://resources.bnet.com/topic/insurance.html"><![CDATA[Insurance]]></category>
		<category domain="http://resources.bnet.com/topic/insurancefinancial+services+organization.html"><![CDATA[InsuranceFinancial Services Organization]]></category>
		<category domain="http://resources.bnet.com/topic/security.html"><![CDATA[Security]]></category>
		<category domain="http://resources.bnet.com/topic/security+management.html"><![CDATA[Security Management]]></category>
	</item>
	<item>
		<title><![CDATA[Value at Risk: A Methodology for Information Security Risk Assessment]]></title>
		<link><![CDATA[http://jobfunctions.bnet.com/abstract.aspx?docid=167558]]></link>
		<description><![CDATA[This paper presents Value at Risk VAR, a new methodology for Information Security Risk Assessment. VAR summarizes the worst loss due to a security breach over a target horizon, with a given level of confidence. More formally, VAR describes the quantile of the projected distribution of losses over a given...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Wed, 15 Aug 2001 00:00:00 -0700</pubDate>
		<category domain="http://resources.bnet.com/topic/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://resources.bnet.com/topic/value+at+risk.html"><![CDATA[Value At Risk]]></category>
		<category domain="http://resources.bnet.com/topic/investment.html"><![CDATA[Investment]]></category>
		<category domain="http://resources.bnet.com/topic/finance.html"><![CDATA[Finance]]></category>
	</item>
</channel>
</rss>
