Contact Us

GRC - GOVERNANCE, RISK & COMPLIANCE

ATIBA provides information security and risk management consulting services for the Banking, Financial Services, Insurance, Healthcare, Manufacturing, Government, Retail and Telecom industries.

Information risk management is a growing concern for most business executives, regardless of industry. Compliance mandates such as SOx, HIPAA, GLBA, SEC and PCI impact many organizations and compliance standards are becoming more onerous and non-compliance penalties are becoming increasingly more expensive. In order to stay viable, businesses of all sizes must  mitigate their risk exposure by protecting personal and private customer information.

Whether you are an organization that must adhere to regulatory compliance or are a small to medium size business interested in mitigating your business risk, putting in place the appropriate strategies and controls to safeguard information makes good business sense.

ATIBA's GRC professionals have the  expertise to help clients plan, develop and implement processes, procedures and controls to secure data, protect personal information and achieve compliance goals.

In many cases we can help you  automate the business processes that control access to information systems and not only help you secure data, but also help you streamline processing and achieve process efficiencies.

ATIBA can help you develop security policies and implement security frameworks that are sustainable and manageable.

We can act as an independent assessor to review the existing controls you have in place, identify gaps, remediate deficiencies and produce the documentation and reports required for regulatory compliance.

 

ATIBA's implifying Data Security & Privacy  Information Sheet
   
ATIBA's Simplifying Data Security & Privacy Brochure

   

COMPLIANCE, RISK & READINESS ASSESSMENTS

  • SOx, GLBA, HIPAA, CFR, California Privacy Act

  • IT Security

  • PCI, Red Flag Rule

  • ISO 27001/17799, SAS 70, Basel II

SERVICES

  • Strategy, Policy and Procedure Development

  • Business Continuity Planning/Disaster Recovery Planning

  • Aligning I.T. to Corporate Business Strategy

  • Information Security Risk Management

  • Compliance  Assessments

  • Testing and Remediation

  • I.T. & Security Assessments

  • Mapping Organization Controls Framework to CobiT/COSO

  • Implementing Quality Frameworks (ISO 27001/17799, SAS 70, Six Sigma, CobiT, COSO, ITIL)