Due Diligence and Ongoing Monitoring

 View Only
  • 1.  Free software

    This message was posted by a user wishing to remain anonymous
    Posted 02-06-2023 03:41 PM
    This message was posted by a user wishing to remain anonymous

    Do you perform security review on free software before personnel at your organization can utilize it?
    If yes, what should we be reviewing to address Information security?


  • 2.  RE: Free software

    This message was posted by a user wishing to remain anonymous
    Posted 02-06-2023 04:26 PM
    This message was posted by a user wishing to remain anonymous

    We do perform security reviews on free software to review if the software will interact with sensitive data and where, how and why is data being transmitted to external sources (if applicable).