Sue the Auditor and Shut Down the Firm

Rothke and Mundhenk: "We are all in favor of throwing incompetent auditors to the dogs. Conversely, any organization that refuses to remediate security gap findings should be given an injunction"

» View Article

READER FEEDBACK
Preview
Anonymous
Thu, 2009-07-09 14:33

Well, sue the authors, then.
They are the incompetent, when they don't know the limitations of their (?) audit work.
Auditors are NOT hired to ensure findings are fixed.
Auditors are ONLY hired to deliver the findings.
Management is accountable to resolve any issues.
On the contrary, if auditors would chase findigs resolution, they would be culpable of attempt to take control of (part of) the auditee, a.k.a. robbery.

reply
Charles H.
Tue, 2009-07-14 15:13

Very well put!!!

I only wish this would come to fruition, where the insecure companies would have their internet connections suspended. If that would happen, data breaches would drop significantly.

charlie

reply
Post a comment
The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.