You are currently viewing the ‘Information Security’ Category

How will the PPI Bill affect you?

Tuesday, January 12th, 2010

We offer a seminar called How will the PPI Bill affect you? What do we cover? An overview of  PPI laws, rules, codes and standards What must an organisation comply with? Overview of the PPI Bill.  What is it and what is the current status?  What are the time lines? Important definitions The role players Key terms ...

Information Security Legal Audit

Wednesday, November 4th, 2009

Organisations have a keen appreciation that information has value, which people are prepared to pay for (hence the increase in identity theft, industrial espionage, etc.).  All companies have a legal obligation to address information security issues and the challenge is to identify precisely what they are obliged to do and ...

Michalsons Information Security Policy Framework

Tuesday, November 3rd, 2009

When we review information security policies, we have particular objectives and follow a specific framework we have developed. Our framework is based on SANS 27001 and SANS 27002 ("the South African Standards"), our own expertise and experience in the area of information security, information management, law and risk management[1] taking ...

ICT Legal Framework

Sunday, November 1st, 2009

History of the Framework In 2002 Michalsons started developing an ICT Legal Framework document as a control tool for use by us when conducting our ICT Legal Audit. "ICT" stands for "information, communication and technology" - see the article "What is ICT?" Our ICT Legal Framework was developed in response to the ...

Draft and Review Information Security Policies

Saturday, October 31st, 2009

Michalsons are regarded as leaders in the legal aspects of information security.  In particular we have extensive experience in the drafting and reviewing of information security policies through a legal lens. Our objectives are to identify and highlight any information legal risks and legal compliance issues, that arise from our ...

Infosec Policies - Role of Attorneys

Wednesday, July 29th, 2009

Attorneys play a crucial role in assisting an organisation in implementing information security policies and practices.  Their responsibilities include, amongst other things acting as a liaison between the Board of Directors and management, who hold the fiduciary duty for the organisation's intangible assets, and the security specialists who seek to protect ...

What is “information security law”?

Saturday, November 1st, 2008

Information security law is an emerging area of the law which is currently at the same stage of development as so-called "Internet law" or "cyber law" was at in the early 21st century. There is no single law in South Africa that deals exclusively with information security. Therefore one has to ...

What is information security?

Thursday, October 23rd, 2008

The term "information security" is not capable of does one single definition, but is rather an umbrella concept that encompasses a number of meanings. For many, "information security" is the protection of information and information systems by providing critical security goals, features or capabilities. "Confidentiality", "integrity" and "availability" are the ...

What is ICT law?

Tuesday, October 21st, 2008

We focus on the law related to ICT: Information - (or data) in paper or electronic format Communication - in person or electronically (electronic communications), in writing or voice, telecommunications, and broadcasting Information technology (IT) - including software, hardware and electronics Communications technology - including protocols, software and hardware By law we mean laws, rules, ...

Michalsons Information Security Services

Monday, October 20th, 2008

We can assist by providing services around the following: ECT ACT related issues We can help you: understand the difference between an "electronic signature" and an "advanced electronic signature" and what this means to your organisation; have your "advanced electronic signature" accredited with the South African Accreditation Authority; understand whether or not your organisation ...