"[...]company cannot have been compliant if it was breached." - Really? that's the line we're sticking to? Compliant == 100% secure?
-
-
Replying to @Infosanity
@Infosanity Compliance is not security. Usually is just theater. Many "security" companies rely on this theater to survive. Sad, but true.1 reply 0 retweets 0 likes -
Replying to @suffert
@suffert@Infosanity Well, isn't it similar to ISO standards? It means you have the right SLA etc in place, doesn't mean the product is good1 reply 0 retweets 0 likes -
Replying to @bartblaze
@bartblaze@Infosanity Maybe. Compliance is "measurable" is what we hear from "GRC Pros". It can measure the effort maybe, not the posture.1 reply 0 retweets 0 likes
Replying to @suffert
@suffert @Infosanity Exactly.
7:48 AM - 26 Mar 2014
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.