Information Security - Risk Management & Compliance
Driving value out of security investments and ensuring compliance with federal, state, and industry regulations through comprehensive risk assessment, vendor management, disaster recovery and business continuity planning, policy development, testing and training.
| Disaster Recovery/
Business Continuity Planning Assistance in developing and maintaining a comprehensive plan to quickly and effectively recover from a disaster and maintain business operations. Testing and training to further ensure the success of DR/BCP strategy. |
|
| MA Data Privacy Compliance Assistance in developing a comprehensive information security program and infrastructure to comply with the Massachusetts data privacy law, 201 CMR 17.00 (M.G.L. 93H). |
Case Study | On-Demand Webinar |
| Risk Assessment An analysis of risk related to assets, operations, or specific processes and functions, including but not limited to: IT, customer/member information, operational, enterprise, Internet banking, ACH, identity theft, AML/BSA compliance, etc. |
|
| Social Engineering Testing Testing personnel for general security awareness and compliance with corporate policy and procedures. A written test summary and analysis is provided along with recommendations for improvement. |
|
| Vendor Management Assistance in creating a comprehensive vendor management program to manage third-party vendor relationships. |
|
| M&A Due Diligence Assistance in various aspects of the M&A due diligence process. |
|
| Policy and Procedures
Assistance in drafting information security policies and procedures to align with corporate strategy, regulatory standards, legal compliance, and industry best practices. |
![]() |

