<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://www.ism-community.org/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Release</title><link>http://www.ism-community.org/files/folders/trainingandawarenessrelease/default.aspx</link><description /><dc:language>en</dc:language><generator>CommunityServer 2007 (Build: 20423.869)</generator><item><title>ISM-Community Top Ten Press Release</title><link>http://www.ism-community.org/files/folders/trainingandawarenessrelease/entry1015.aspx</link><pubDate>Fri, 29 Jun 2007 20:24:16 GMT</pubDate><guid isPermaLink="false">b96df89b-40a7-4829-bad0-5e17a7c202b4:1015</guid><dc:creator>rybolov</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;&amp;nbsp;Press release to announce the release of the ISM-Community Top Ten list with quotes from some of us.&lt;br /&gt;&lt;/p&gt;</description><enclosure url="http://www.ism-community.org/files/folders/1015/download.aspx" length="131072" type="application/doc" /></item><item><title>ISM Community Top Ten</title><link>http://www.ism-community.org/files/folders/trainingandawarenessrelease/entry999.aspx</link><pubDate>Wed, 27 Jun 2007 13:35:27 GMT</pubDate><guid isPermaLink="false">b96df89b-40a7-4829-bad0-5e17a7c202b4:999</guid><dc:creator>mcurphey</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;The ISM Community Top Ten is an awareness document that describes a series of key issues that organizations should immediately understand. The importance of corporate Governance, Risk and Compliance (GRC) is driving business decisions and corporate strategies in the information age. Many organizations GRC strategies don’t include information security management as a foundational component, and for those that do, it is often incomplete and we believe this to be a significant oversight. Information security is necessary to manage security risks and should be an essential component of any GRC strategy supporting modern business &lt;/p&gt;
&lt;p&gt;This Top Ten list describes key concepts that should be part of any effective information security program. Organizations can quickly compare their current information security program against this Top Ten list and determine if and whether they need to improve. This document does not attempt to address every issue, nor does it provide a blueprint for addressing corporate information security as a whole. It does, however, provide a collective list of the ten things we believe companies should be doing. The list also provides high-level guidance from many of the most experienced CSO’s and security experts in the industry with “tips and tricks from the field”. It is written from real world experience: it is not a thinly disguised product marketing paper and does not gloss over these important issues. &lt;/p&gt;
&lt;p&gt;We urge all companies to examine their own corporate practice and strategy against the ISM Community Top Ten and take action accordingly. &lt;/p&gt;
&lt;p&gt;Tim Smith, Director, Bridge Point Communications (main author) and The ISM-Community Team &lt;/p&gt;</description><enclosure url="http://www.ism-community.org/files/folders/999/download.aspx" length="670455" type="application/pdf" /></item></channel></rss>