Kasten Chase Applied Research Limited

Kasten Chase Applied Research Limited

June 14, 2005 16:01 ET

Kasten Chase Launches Storage Security Compliance Auditing Service

TORONTO, ONTARIO--(CCNMatthews - June 14, 2005) -

New service helps organizations enhance 'compliance-readiness' and storage resiliency

Kasten Chase (TSX:KCA), a leader in data storage security, today introduced the industry's first auditing service to help organizations secure storage infrastructures and achieve regulatory compliance. Assurency® Storage Security Compliance Audit provides an evaluation of processes and controls within the data storage infrastructure, to assess compliance with privacy and corporate governance legislation such as SOX, SEC 17A-4, California Senate Bill 1386, PIPEDA, GLBA and HIPAA. The service identifies compliance risks resulting from missing or inadequate controls and recommends corrective actions to improve clients' 'compliance-readiness'.

"Protecting the privacy of personal information and meeting regulatory compliance requirements are now top priorities for business managers and IT storage professionals," stated Michael Milligan, President and CEO of Kasten Chase. "However, until now, storage professionals did not have an objective framework for assessing their data management and security practices against their compliance obligations. Assurency Storage Security Compliance Audit addresses this urgent need in the market place."

The Storage Security Compliance Audit uses internationally-recognized standards for information assurance, including ISO 17799, COBiT and the NIST 800 series, to assess clients' data storage operations and the policies, processes and controls for protecting their data. The assessment results map to the fundamental principles underpinning today's regulatory compliance requirements. The service delivers the following information to accelerate clients' compliance programs:

- A summary of relevant compliance legislation;

- Compliance-readiness scores for each compliance principle;

- Independent review and assessment of storage processes and controls;

- Compliance risk implications and corrective actions for inadequate or missing controls;

- In-depth analysis of high-priority control gaps.

"Whether just getting started or preparing for an external audit, storage professionals are struggling with compliance obligations that are both demanding and complex," stated Jon Oltsik, Senior Analyst, Enterprise Strategy Group. "Kasten Chase is the first to market with a service that will help storage professionals address regulatory issues, demonstrate compliance with government legislation, and improve the security of their valuable data assets.

"The service is also very timely," continued Oltsik, "In response to highly-publicized security breaches at Bank of America, Citigroup and elsewhere, the storage community is finally waking up to security. Our latest research indicates that over 43% of storage professionals are reviewing their storage security posture."

Assurency Storage Security Compliance Audit provides the following benefits to storage professionals:

- Proactive approach to compliance management that anticipates and resolves potential issues;

- Repeatable measures of compliance controls serving to reduce audit costs and provide a 'benchmark' for improvements;

- Compliance risk implications of inadequate controls highlighting potential areas of non-compliance and help avoid fines and penalties;

- Prioritized control recommendations ensuring resources are allocated efficiently;

- Identified opportunities to adopt information management and security best practices that enable organizations to build more resilient data storage infrastructures.

"When personal information entrusted to a company is lost or stolen, the impact to that company is now abundantly evident," added Milligan. "New legislation requiring public disclosure of these security breaches is having its desired effect - organizations are recognizing the need for a higher standard of care for the information assets in their control. Our service provides organizations with a frank perspective on where they stand with respect to safeguarding personal information, and the guidance they need to properly gauge and resolve issues that could otherwise result in security breaches and contribute to identity theft."

The Assurency Storage Security Compliance Audit service is priced at $25,000 per engagement and is available immediately. For further information on this service, please visit www.kastenchase.com, or call 1.877.873.7277.

About Kasten Chase

Kasten Chase (TSX:KCA) delivers innovative data storage security solutions to mitigate information security risks, meet compliance obligations and reduce the cost and complexity of data storage operations. Assurency SecureData, the Company's award-winning, enterprise-class, storage security solution, utilizes a distributed, scalable architecture to encrypt networked, archive and backup storage. SecureData employs FIPS-certified cryptographic algorithms to selectively encrypt stored data in accordance with security policies. It employs advanced key management techniques to protect, compartmentalize, and control access to data stored on disk and tape.

Kasten Chase complements its award-winning technology with business services that assess information risk and audit compliance practices for enterprise storage. CISSP and BS 7799-qualified consultants help customers prioritize and justify information security investments that deliver cost savings and a comprehensive foundation for compliance.

The Company established its security credentials within government and military departments through its high-assurance, remote access solutions. Certified by the U.S. National Security Agency and pre-approved by the Canadian Communications Security Establishment, Kasten Chase's RASP Data Security™ portfolio protects some of the most sensitive information in the world.

Kasten Chase is headquartered in Mississauga, Ontario with offices in Ottawa, Ontario and Sterling, Virginia. Kasten Chase is a certified ISO 9001:2000 company.

Contact Information