Skip to main content

Posts

Showing posts with the label COBIT

My InfoTech Journal!

My InfoTech Journal: Decoding the Networking Enigma: OSI vs. TCP/IP Reference Models

My InfoTech Journal: Decoding the Networking Enigma: OSI vs. TCP/IP Reference Models The OSI (Open Systems Interconnection) Reference Model and the TCP/IP (Transmission Control Protocol/Internet Protocol) Reference Model: The OSI Reference Model and the TCP/IP Reference Model are both conceptual frameworks used to understand and standardize how different networking protocols and technologies interact. Here are some areas of comparison: 1. Number of Layers: OSI Model : It consists of seven layers: Physical, Data Link, Network, Transport, Session, Presentation, and  TCP/IP Model : It has four layers: Network Interface, Internet, Transport, and Application. 2. L ayer Functionality: OSI Model : Tends to be more comprehensive and abstract, defining each layer's functions independently. TCP/IP Model : Reflects the actual implementation of the Internet and focuses on how protocols are used in practice. 3. Adoption / Use: OSI Model : Less commonly used in practice, but it is still valuab...

My InfoTech Journal: Unpacking the OSI Model: Your Guide to Networking Layers

My InfoTech Journal: Unpacking the OSI Model: Your Guide to Networking Layers The OSI (Open Systems Interconnection) reference model is a way to understand how different parts of computer networks communicate. Each layer having a specific job. 1. Physical Layer: This is the actual hardware, like cables and switches. Example: Ethernet cables connect devices in a network. 2. Data Link Layer: Ensures data is sent and received without errors within a local network. Example: Ethernet frames help in local data transfer. 3. Network Layer: Manages data routing between different networks. Example: IP (Internet Protocol) routers guide data between your home and a website. 4. Transport Layer: Ensures data arrives reliably and in order. Example: TCP (Transmission Control Protocol) guarantees error-free data transfer. 5. Session Layer: E stablishes, maintains, and ends connections between devices. Example: Setting up a video call on Skype. 6. Presentation Layer: Translates data into a format that ...

Unlock the Secrets of the Top 10 Information Security Solutions and Safeguard Your Digital World!

{color: #000000; } My InfoTech Journal: Unlock the Secrets of the Top 10 Information Security Solutions and Safeguard Your Digital World!

10 Audit Findings for SOX Compliance That Every Business Needs to Know!

The Top 10 Security Risks Facing the Pharmaceutical Industry: Is Your Company Prepared?

My InfoTech Journal: The Top 10 Security Risks Facing the Pharmaceutical Industry: Is Your Company Prepared?

What is General Data Protection Regulation (GDPR)

My InfoTech Journal:  General Data Protection Regulation (GDPR) The  General Data Protection Regulation , also known as  GDPR  is regulation under the  European Union (EU) Law  that mandates data security and privacy.  The  General Data Protection Regulation ( GDPR)  was passed by the European Parliament in 14-Apr-2016 and which became  effective on 25-May-2018.  The main objective of GDPR is to ensure that individuals under the European Economic Area (EEA) have control and rights over their personal information. The GDPR also aims to simplify the regulatory requirements for international business. GDPR Protection Principles  1 Lawfulness, fairness and transparency  —  Processing must be lawful, fair, and transparent to the data subject.  Purpose limitation   — You must process data for the legitimate purposes specified explicitly to the data subject when you collected it.  Data minimization   — You should c...

Information Security

My InfoTech Journal: Information Security Information Security is always a very interesting domain for discussion.  Over the years, Information Security has evolved as a domain that requires more and more stringent security controls in order to comply with growing compliance requirements and most importantly to protect corporate sensitive data, confidential, personal information, and other critical data. There are several Information Security Standards or Frameworks available in the industry to choose from.  But there is no one standard that can claim the title of being an all-in-one package solution. So if you are into Information Security compliance, you need to understand your organization to know what standards will best fit your compliance requirement.  In some cases, you will have to implement combinations of industry standards for your compliance governance program. Back in the days, I was involved in an outsourcing project as an Account Security Officer (ASO) for...