
The Milliman Security Management System (MS2) and web application helps organizations comply with SOX, FFIEC, GLBA, HIPAA and other IT and security challenges. It is an intelligence-based system that is easy to use yet robust. Its knowledge base covers 28 critical topic areas and contains over 750 baseline control questions.
MS2 provides the backbone for a program managing an organization’s administrative, physical, and technical security and considers both business circumstances and the IT environment. It also includes user-friendly tools for easy customization in addressing special or unique security concerns.
MS2 meets the needs of organizations concerned with:
- SOX, FFIEC, HIPAA, GLBA or other regulatory compliance issues
- Privacy regulations and protecting personal and sensitive information
- Implementing and maintaining a state-of-the-art security compliance program
- Assuring that safeguards meet or exceed generally accepted security practices
- Performing effective and thorough security risk assessments
- Determining the extent of business unit compliance with organizational standards
Product Features
- Fits all organizations regardless of size
- Handles any organization structure, including subsidiaries, multiple business units, locations or logical business units, and departments
- Automates surveys of control assessment with easy to use questionnaires
- Performs complex security risk assessments seamlessly
- Produces security safeguard gap assessments automatically
- Categorizes gaps with guidance to determine if they need to be addressed and how
- Performs technical and non-technical security safeguard assessments based on generally accepted industry security practices (e.g., NIST, ISO, ISSA, etc.)
- Documents control validations or tests performed by the organization and supports rating controls to qualitatively assess the reliability of the controls in place
- Produces a robust set of compliance reports for management, business partners, auditors, and regulators:
- Security Policies & Procedures
- Risk Assessment Results by location, area, threat & vulnerability
- Maps security safeguards to generally accepted standards and practices (NIST, ISO 17799, etc)
- Tracks compliance activities
- Offers user-friendly tools for customization
- Provides a Best Practice & Solution Resource Center
- Contains over 25 Policy Templates and Toolkits
- Provides implementation and Help Desk support
|