HOME         ABOUT US         NEWS & EVENTS         MEASURABLE DIFFERENCE         CONTACT         JOIN OUR TEAM
Brown Smith Wallace LLC


IT Security and Privacy


The communication and commerce of the business world are highly integrated with technology which has led to a need for information security to protect business activities, technology and corporate data.  IT security threats, vulnerabilities and data exposures challenge every organization.  The goal is to effectively manage and control these risks.  All too often, organizations are unaware of the IT security risks they face, lack information security, and are unable to manage risks in the event of a IT security breach.

Information Security Services

Our team of highly experienced information security professionals will examine your critical business systems and determine the level of exposure you have to internal and external threats. We provide a wide array of IT security services listed below to assist organizations in identifying and addressing potential security exposures, such as loss of customer data, loss of revenue and reputation damage, before they become problems.

  • Attack & Pentration Testing
  • Internal Threat & Vunerability Assessment
  • Information Security Risk Assessments
  • Social Engineering
  • Web Application Development Security Reviews
  • Wireless Security Review
  • Overall Technical IT Security Review
  • Information Security Strategy, Design and Implementation
  • CISO As You Grow


Payment Card Risk Services

Payment card (e.g., debit and credit cards) risk services help to ensure protection of your customers’ privacy. Businesses rely on credit or debit cards to process monetary transactions every day. Likewise, there are constant unsolicited and illegal attempts to access the cardholder data contained in those transactions. It is more important than ever for your business to have controls in place to adequately protect consumer information.

In 2004, VISA and MasterCard security standards were endorsed by the four other card brands creating the Payment Card Industry (PCI) Data Security Standard. This unified security program was designed to protect credit card data based upon fundamental security controls. Compliance with the PCI Data Security Standard is required of all merchants and service providers that store, process or transmit cardholder data.

As a certified approved scanning vendor (ASV), our team of experienced information security professionals can help ensure your business is compliant with the PCI Data Security Standard by performing:

  • PCI compliance reviews or audits
  • PCI compliance gap assessments
  • PCI network compliance scans and reviews
  • PCI service provider assessments
    • Transaction processors
    • Payment gateways
    • Call centers
    • Remittance processing companies
    • Managed firewall and IDS providers
    • Web and data hosting providers
           


Cybercrime and Computer Forensic Services

Approximately 90 percent of U.S. companies are involved in litigation. A critical component in virtually every internal investigation or litigation matter is computer data. In order to utilize this data, it must be properly preserved, collected, analyzed and reported. Preserving and collecting data is what we provide with our cybercrime and computer forensic services.  It is often difficult because of the alarming rate at which data is growing, and because data exists on many sources, including computers, file servers, e-mail systems, backup tapes and cell phones.

Our cybercrime and computer forensic team helps clients perform more effective internal investigations and prepare for litigation by acquiring, analyzing and presenting digital data that will support or refute their legal positions. Our cybercrime and computer forensic professionals can respond rapidly - both locally and globally - without disrupting routine business operations or compromising data integrity.

Our team includes professionals with deep cybercrime and computer forensic knowledge and experience in computer forensics protocols, network infrastructure and evidence control. In a typical engagement, we begin by working with clients to identify all the relevant data sources and provide tools to preserve the data using standard and accepted processes. We use our expertise in c
ybercrime, computer forensics and e-discovery to help clients with:

  • Corporate fraud and embezzlement
  • Criminal investigations
  • Expert witness services
  • Corporate e-mail investigations
  • Investigation and discovery litigation programs
  • Insurance fraud
  • Wrongful termination
  • Harassment and/or discrimination cases
  • Divorce litigation
  • Mobile device investigations
  • Litigation support
  • Intellectual property disputes
  • Corporate counsel support
  • Electronic records management

Data Privacy Services

Information is pervasive within a business, and managing information flow inside and outside of the organization requires special attention. Businesses may face potential litigation and/or operational and compliance issues if sensitive information is not properly protected. The risks are typically higher in industries with complex regulatory requirements, in organizations that are unable to determine what constitutes sensitive data and in organizations that lack an integrated approach to data privacy.

Our data privacy team provides a full spectrum of services (i.e., assessment, transformation and management) to aid organizations in identifying and addressing privacy exposures, such as loss of customer data, loss of revenue or reputation impairment, before they become problems.

Our data privacy professionals help companies identify all forms of sensitive consumer information and create the processes and metrics needed to manage the information in compliance with business and regulatory requirements. With our help, our clients have been able to dramatically reduce their privacy risk by conducting gap assessments and implementing remediation plans. Our services include:

  • Data Privacy Review
  • Information Security Compliance Services - HIPAA

To see how we make A Measurable DifferenceTM Contact Us

 


 HOME | TAX | AUDIT | RISK | FINANCIAL ADVISORY | RECESSION | INSURANCE 
NOT FOR PROFIT | INDUSTRIES | AFFILIATES | PRIVACY | LEGAL | SITE MAP

Thursday July 29th 2010 09:07:34 am


ST. LOUIS 314.983.1200
ST. CHARLES 636.255.3000
HIGHLAND,IL 618.654.3100
TOLL FREE 888.279.2792

Anthony Munns
CISA, CIRM, C
ITP
Risk Services
314.983.1297
amunns@bswllc.com

Ron Schmittling
CPA/CITP, CISA, CIA
Risk Services
314.983.1398
rschmittling@bswllc.com

Ted Flom
CPA, CISA,CIA
Member in Charge
314.983.1294
tflom@bswllc.com

Get More Information