Compass IT Compliance Blog / Policies and Procedures (4)

Password Complexity – Going Beyond the Minimum Requirements

Password Complexity – Going Beyond the Minimum Requirements

As the frequency and scale of cyberattacks has risen sharply over the past decade, we as end users have been repeatedly asked (and often required) to increase the complexity of our passwords. Back when the internet was in its infancy, the idea of creating a complex and tough-to-guess …

Read Story

Zero Trust as Learned from My Grandmother

Zero Trust as Learned from My Grandmother

I have a line I use with my kids (mainly my teenagers, not so much my nine-year-old yet); “I trust you until I don’t”. They know the line well and sometimes will even finish it for me. I have raised them to hopefully make good decisions and to tell the truth, with the idea of keeping …

Read Story

PCI, Service Providers, and You

A man holds a credit card in his hand while scrolling on a laptop

As merchants increasingly utilize trusted partners to maintain and manage critical pieces of their business, information technology, and security infrastructure, it becomes necessary to build a program to manage these vendors.

Read Story

The Anatomy of an IT Policy

The Anatomy of an IT Policy

What are policies and why do we need them? Every organization should have a set of policies in place. Policies are essentially the laws and regulations of an organization. They pertain to the health, safety, and accountability of employees and how the organization interacts with clien …

Read Story

IT Asset Management – Disposal of Assets

IT Asset Management – Disposal of Assets

As we reach the end of this asset management blog series, we have discussed the need for establishing governance policies and procedures, how to acquire hardware and software for your organization, and how to monitor and upgrade assets throughout their lifecycles.

Read Story

IT Asset Management – Monitoring and Maintaining Assets

A workstation with a white coffee mug

It has been a few months since my last blog post about IT asset management was published. Daily events are causing rapid changes that organizations are having to adapt to, leaving IT leaders asking, “how do I account for all of my equipment”? This can be accomplished in a variety of w …

Read Story

Subscribe by email