Yasmine Dowidar

  • Archer Employee
  • Total activity 229
  • Last activity
  • Member since
  • Following 0 users
  • Followed by 2 users
  • Votes 0
  • Subscriptions 29

Articles

Recent activity by Yasmine Dowidar Recent activity Votes
  • Take A Risk, A Calculated Risk

    Taking risk is necessary in today’s business world. Cultivating the data and orchestrating the information to enable a risk decision is a critical step for management to make an informed choice. G...

  • Doing Business with European Citizens? The time has come to Prepare for the EU General Data Protection Regulation (GDPR)

    The European Union General Data Protection Regulation (GDPR) will bring big changes for organizations that handle information of European citizens.  The scope of the GDPR not only encompasses Europ...

  • Is a Simple Question the New Answer to Persuasion?

    I need your help with something. How many books exist about the fine art of being more persuasive? Do they work? Whether it’s to win & influence, breach the inner circle, or just get a date, there’...

  • Continuous Monitoring Part 2

    So, in Part 1 of this series I covered a few terms and the relevant documents around CM. This time I am going to talk about models for actually doing it. I will cover a few ways that federal entiti...

  • MOVE OVER SMALL DATA, HERE COMES BIG DATA

    This is my first of a series of posts on the topic of data, data management and yes ultimately tying into Archer and GRC. But before we dive into Archer and GRC, I am going to first talk about data...

  • Are They OR Aren’t They a Third Party?

    I’ve been grappling the past couple of weeks over the definition of a third party.  Typically, we would say that a third party is an organization with whom you have entered into a contract to provi...

  • The Role Tone at the Top Plays Enabling ERM

    In my last post I discussed how critically important risk taxonomy is for the success of an ERM program – the need for the organization to agree on risk-related terminology, formalizing it as part ...

  • Critical Infrastructure: Executive Order 13636 and NISTs Resulting Cybersecurity Framework

    If we had a cyber war with China or Russia tomorrow, would they only attack our Pentagon information systems? Or would they attack our banks and power companies at the same time? I think the answer...

  • Dont Mess With Naptime

    Long story short an electrical malfunction caused my neighbor’s house to catch fire over the weekend. Fortunately nobody was hurt but things certainly could have turned out much worse for a few sca...

  • Continuous Monitoring Pt. 3

    So far in this series I talked about CM documentation and CM models. What’s next?      Beginning with the assumption that you are already using NIST RMF (or possibly DIACAP if in the military spac...