Abstract

The article is about studying the main approaches to the organization of compliance in solving the issues of ensuring information security. It analyzes the concept of compliance and its main components. Considering the system of compliance functions, the author also analyzes the categories of norms and requirements that underlie the implementation of compliance functions, as well as examples of legal and regulatory documents in the field of information security compliance. There are notes on features of the modern development of compliance in Russia in various fields. The main tasks of compliance control in the field of information security in Russian organizations are considered. Areas are identified in which the implementation of compliance functions is especially significant. The article considers that the information protection can be ensured by using compliance techniques, as well as the necessary tools used for that. The author pays special attention to the issues of compliance automation, and the analysis of the tools that can be used for that. The article discusses the advantages of automated compliance over the traditional one, as well as examples of existing developments in the field of compliance automation. The author of the article also considers the factors indicating the presence of a developed compliance system in the company, as well as the importance of those factors in ensuring the information security of organizations

Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call