Record Retention & Data Management

Welcome to the Record Retention & Data Management community group. This group addresses all GRC issues that arise in the management of data. In addition, there is a community group that addresses Information Privacy and Security. You may want to check out and join that group as well. We welcome participation in this group by any premium or enterprise OCEG member.
Latest Activity
GRC Technology Solutions Guide v. 2.1 resource Guides  OCEG Reviewed
Thumbnail

The GRC Technology Solutions Guide  identifies and defines categories of  technology  that have a role in supporting the GRC system and specifically the Elements of the GRC Capability Model™. The Guide categorizes these Technology Categories by:

Read more
United Kingdom, Guide to data protection – definitions, principles and practical examples resource Agency Guidances OCEG Reviewed

The principles of the Data Protection Act in detail: this Guide explains the purpose and effect of each principle, and gives practical examples to illustrate how the principles apply in practice.

From the Information Commissioner's Office (ICO).

Read more
High Performers and Foundational Controls: Building a Strategy for Security and Risk Management (January 2011) resource White Papers OCEG Reviewed

Overview: In this paper, EMA examines the broad domains of controls enterprises must consider in order to build a solid foundation for IT security management: Countering threats, Resolving vulnerabilities (in more than just software), Managing application risks, Protecting sensitive information, Managing and enforcing identity, access and entitlements, Managing events and

Read more