Home > Compliance Framework Database Updated

News

Compliance Framework Database Updated

3/31/2008

Consulting and publishing firm Network Frontiers has released the Q1 2008 Unified Compliance Framework (UCF), a database used in compliance management systems. UCF maps hundreds of regulations, including privacy information, HIPPA, PCI-DDS and Medicaid/Medicare mandates, into a master hierarchal framework. This latest version of the UCF consolidates cross platform configuration management controls into a single set of controls.

"The UCF harmonizes IT controls from over 400 international regulatory requirements, standards, and guidelines from both technical and legal perspectives," said Dorian Cougias, CTO of the company. "Rather than testing and asserting compliance for each individual regulation, IT organizations use the UCF to save...time and money by distilling compliance requirements to their essence and asserting compliance across multiple authority documents simultaneously."

Created by law firm Latham and Watkins, UCF was first introduced to the market in 2006 and has been integrated into products from Computer Associates and NetIQ. The framework has been used by multiple education institutions, including the University of Delaware, the University of Fairfax, Carnegie Mellon University, the University of Utah, and the University System of Georgia.

"CA GRC Manager integrates the Unified Compliance Framework as an essential resource for the mapping of current controls and regulations as well as the rapid support of future compliance requirements," said Marc Camm, VP of governance, risk and compliance products at CA. "Since the UCF harmonizes thousands of controls, our customers are able to simplify compliance and proactively address new and updated regulations."

"We selected the Unified Compliance Framework because it is the standard for integrated compliance," said Matt Ulery, director of product management at NetIQ. "The UCF allows us to deliver the leading controls content and focus on our core competency of delivering IT and security management solutions."

The UCF organizes real-world IT processes into 12 "IT Impact Zones," each dealing with one area of policies, standards, and procedures, such as audits and risk management. Within each zone, a company can map the overlap between multiple authority documents, create a control list for each zone and clarify any conflicts created by overlapping authority documents.


Dian Schaffhauser is a writer who covers technology and business. Send your higher education technology news to her at dian@dischaffhauser.com.

Cite this Site

Dian Schaffhauser, "Compliance Framework Database Updated," Campus Technology, 3/31/2008, http://www.campustechnology.com/article.aspx?aid=60303

copy text (above) for proper citation



Recommended Reading
  • Cedarville U Sets Up SonicWall Firewalls

    Cedarville University in southwestern Ohio has implemented SonicWALL firewalls to provide high-speed gateway firewall protection for its 3,000 students.

  • Data Breach Strikes U North Dakota Alumni Association

    The alumni association for the University of North Dakota has gone public with a data breach that occurred when a laptop belonging to a software vendor was stolen from a vehicle. The computer contained the names of 84,000 university alumni, donors, and others, according to coverage by the Grand Forks Herald.

  • Tips for Selecting a Campus CRM tool

    As competition for students increases, colleges and universities are looking more and more to customer (or constituent) relationship management software for help in remaining competitive.

  • Intercast Networks Goes into Beta with Kazam Video Service at Internet2 Universities

    Intercast Networks has redesigned Kazam, its student Internet TV and video service based on the company's VideoXpress platform. Following a spring semester alpha trial at Columbia and Purdue University, the company redesigned Kazam's interface based on student feedback and added additional content that caters to a student audience.

  • Michigan State Managing MRI Images from Africa with Acuo Tech DICOM Services Grid

    Doctors at Michigan State University have begun using the Digital Imaging and Communications in Medicine (DICOM) Services Grid from Acuo Technologies to transport and manage magnetic resonance imaging (MRI) results from a hospital in Malawi, Africa in order to monitor the impact of malaria on children.

  • IIT Delhi Delivers Services with Ingres Open Source

    Administrators at the Indian Institute of Technology Delhi (IIT Delhi) have gone public with their installation of open source database management software from Ingres. IIT Delhi, one of seven leading institutes of technology in India, adopted Ingres Database to support administration functions such as grading, finance, human resources, procurement, and hospital administration.