RE: regulations [7:66267]

2003-03-27 Thread Jay Dunn
I have always found it impossible to get a definitive answer on what has
to be done (or not done) for any particular environment (e.g. DoD,
HIPAA, Section 508, etc.). Trying to read and then comply 100% with the
actual regulations is always open to interpretation. A large part of
regulatory compliance is documenting a security policy, disaster
recovery, etc. I would suggest you look into getting a copy of All In
One CISSP Exam Preparation Guide by Shon Harris (sorry, I don't have
the ISBN). Most of the regulations you are concerned about will follow
the principles of the common base of knowledge (CBK) described in this
book. It will also give you a good foundation on general security
principles that should be applied in any environment. Go to
http://www.nsa.gov/snac/cisco/download.htm for information on securing a
router. I don't have a URL, but search for EAL4 on cisco's site. You
should be able to find a document on how to install and configure a pix
for common criteria EAL4 compliance.

Jay Dunn
IPI*GrammTech, Ltd.
www.ipi-gt.com
Nunquam Facilis Est


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
Stull, Cory
Sent: Wednesday, March 26, 2003 11:42 AM
To: [EMAIL PROTECTED]
Subject: regulations [7:66267]

Where could I go to find information on network security regulations for
banks and medical offices?.  Information on firewalls and rules they
have to
abide by and that sort of thing?
 
Thanks
 
God Bless our troops.
 
Cory Stull
CCNP,CCDP,MCSE4/2k
Communications Concepts Unlimited
262-814-7214




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=66316t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


regulations [7:66267]

2003-03-26 Thread Stull, Cory
Where could I go to find information on network security regulations for
banks and medical offices?.  Information on firewalls and rules they have to
abide by and that sort of thing?
 
Thanks
 
God Bless our troops.
 
Cory Stull
CCNP,CCDP,MCSE4/2k
Communications Concepts Unlimited
262-814-7214




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=66267t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: regulations [7:66267]

2003-03-26 Thread COULOMBE, TROY
I would suggest your legal dept. for DEFINATIVE answers...
however, this might get you started:::

http://www.sans.org/rr/legal/

hth,
TroyC

-Original Message-
From: Stull, Cory [mailto:[EMAIL PROTECTED]
Sent: Wednesday, March 26, 2003 9:42 AM
To: [EMAIL PROTECTED]
Subject: regulations [7:66267]


Where could I go to find information on network security regulations for
banks and medical offices?.  Information on firewalls and rules they have to
abide by and that sort of thing?
 
Thanks
 
God Bless our troops.
 
Cory Stull
CCNP,CCDP,MCSE4/2k
Communications Concepts Unlimited
262-814-7214




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=66277t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: regulations [7:66267]

2003-03-26 Thread Robert Edmonds
I can't help too much with the banks, but I used to run the network for
hospital and supported several doctor's offices that used our network.  The
main thing you need to worry about there is that you meet the requirements
outlined in the HIPAA (Health Insurance Portability and Accountability Act
of 1996) regulations.  I hope you're up for some dry reading.  However, this
has been going on for quite a while, so they will be well aware of at least
the general ramifications.

www.wedi.org/snip

That should get you started.  It has plenty of information and links to
other sites.


Stull, Cory  wrote in message
news:[EMAIL PROTECTED]
 Where could I go to find information on network security regulations for
 banks and medical offices?.  Information on firewalls and rules they have
to
 abide by and that sort of thing?

 Thanks

 God Bless our troops.

 Cory Stull
 CCNP,CCDP,MCSE4/2k
 Communications Concepts Unlimited
 262-814-7214




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=66275t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: regulations [7:66267]

2003-03-26 Thread J B
Banks in the US are regulated by the FDIC and audits can extend to Internet
Banking.
JB


Robert Edmonds wrote:
 
 I can't help too much with the banks, but I used to run the
 network for
 hospital and supported several doctor's offices that used our
 network.  The
 main thing you need to worry about there is that you meet the
 requirements
 outlined in the HIPAA (Health Insurance Portability and
 Accountability Act
 of 1996) regulations.  I hope you're up for some dry reading. 
 However, this
 has been going on for quite a while, so they will be well aware
 of at least
 the general ramifications.
 
 www.wedi.org/snip
 
 That should get you started.  It has plenty of information and
 links to
 other sites.
 
 
 Stull, Cory  wrote in message
 news:[EMAIL PROTECTED]
  Where could I go to find information on network security
 regulations for
  banks and medical offices?.  Information on firewalls and
 rules they have
 to
  abide by and that sort of thing?
 
  Thanks
 
  God Bless our troops.
 
  Cory Stull
  CCNP,CCDP,MCSE4/2k
  Communications Concepts Unlimited
  262-814-7214
 
 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=66287t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: regulations [7:66267]

2003-03-26 Thread Scott M. Trieste
Cory,

Look up the Graham-Leach-Bliley Act.

It's a governance that states certain security measures that financial
instutions should abide by.

Good Luck.

-Scott

Stull, Cory  wrote in message
news:[EMAIL PROTECTED]
 Where could I go to find information on network security regulations for
 banks and medical offices?.  Information on firewalls and rules they have
to
 abide by and that sort of thing?

 Thanks

 God Bless our troops.

 Cory Stull
 CCNP,CCDP,MCSE4/2k
 Communications Concepts Unlimited
 262-814-7214




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=66284t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]