Further data security laws on the way

US mulls compulsory security audits

Written by Madeline Bennett

Although a US draft bill calling for compulsory annual security audits to be carried out by publicly listed companies has been delayed until early next year, security experts said regulations of this kind are inevitable, both for US and UK firms.

The draft Corporate Information Security Accountability Bill of 2003 calls for publicly listed US firms to adhere to minimum IT security standards, to be set by the Securities and Exchange Commission.

Under the proposals, compliance would be checked by an annual audit, carried out by an independent auditor. The results would then be submitted alongside annual reports and Sarbanes-Oxley (Sox) submissions.

UK firms publicly listed in the US would need to comply with the security regulations, just as they must with the Sox Act, which sets accounting and data archiving rules for US firms.

However, the draft bill, recently released by Adam Putnam of the US House of Representatives, has met difficulties. A working group including US Chamber of Commerce representatives and the Business Software Alliance met last week to discuss an alternative to Putnam's proposal, which they plan to release in early 2004.

Whatever the outcome of the Putnam bill, new IT security laws are likely to be enforced both in the US and the UK, experts warned. "Reliance on IT systems is now so enormous that it's reasonable to say that somewhere in the near future we'll need more enforced regulations to monitor how firms look after them," said John Holland, vice president of international operations at security specialist TruSecure. "It's inevitable that in the UK there will be similar initiatives [to the Putnam bill]."

Tags:

reader comments

related articles

Governance documents

Corporate governance

IT chiefs have a key role to play in improving corporate governance 01 Oct 2004

 

IT gets ready for audit rules

New regulations for finance and corporate governance are creating more work for IT teams, but could also bring benefits 15 Apr 2004

Row threatens EU car emission rules

Tough rules governing car emissions are in danger of being delayed 17 Dec 2007

US identity theft bill set for approval

Security legislation heads to president's desk 20 Sep 2008

Ofcom puts broadband speeds at heart of 2009 plans

Communications watchdog lays out key priorities for next year 04 Dec 2008

related whitepapers

today's top stories

CIOs must embrace collaboration tools

Author Don Tapscott gives Angelica Mari his reasons for promoting social networking tools and says transparency is the key to security 04 Dec 2008

On a quest to build a connected society

BT Design’s JP Rangaswami talks to Gareth Morgan about his pivotal role in the telecoms giant’s efforts to deliver universal broadband and his plans to tap into the creativity of the open source community 04 Dec 2008

IT leaders must stand by India

A sense of perspective is the most important response from IT leaders to the attacks in Mumbai 04 Dec 2008

Case study: Clifford Chance

Law firm implements Sun platform and reduces datacentres to gain efficiency and cost synergies 03 Dec 2008

Should CRM be more sociable?

As vendors rush to add more social networking bells and whistles to their CRM products, some experts warn that users must tread carefully when venturing into online communities 03 Dec 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will the terrorist attacks in Mumbai affect your offshoring plans?

Will the terrorist attacks in Mumbai affect your offshoring plans?

Is India becoming a risky destination?

Previous poll results

Latest audio and video articles

Padlocked CDVideo

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

Podcast imageAudio

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

Latest in-depth articles

Doctors looking at a computerAnalysis

Watchdog wants IT to cure privacy woes

Information Commissioner Richard Thomas is urging organisations to put privacy protection at the top of their procurement and development criteria 04 Dec 2008

Colin McDonaldComment

Web 2.0 has potential to transform staff training

Employees can sharpen their IT skills through using the latest interactive training tools, writes Colin McDonald 04 Dec 2008

Advertisement

Primary Navigation