Compliance Management ForumJoin discussions and collaborate on Compliance Management issues related to Governance Risk and Compliance (GRC) with your peers.© 2009 Microsoft Corporation. All rights reserved.Tue, 01 Dec 2009 06:07:51 Z217a60ca-f1eb-4d8d-80f5-4a5f5b1fddeahttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/a7f09f43-1047-40bd-ba63-7accc52ac6c9http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/a7f09f43-1047-40bd-ba63-7accc52ac6c9Jeffrey Mhttp://social.technet.microsoft.com/Profile/en-US/?user=Jeffrey%20MWith what GRC authority documents must your organization comply?Whether you're part of a private/public, European/Asian, small/large organization... your organization usually must comply with international, domestic, industry, and other compliance requirements.  These requirements are usually written in the form of governance, risk, and compliance (GRC) authority documents. They may take the form of law, regulations, industry practices, customer contracts, and other documentation applicable to your organization.<br/><br/>With what GRC authority documents must your organization comply?Tue, 23 Jun 2009 16:56:38 Z2009-12-01T06:07:50Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/85f7e46a-137d-438b-83ca-9b87067c4d15http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/85f7e46a-137d-438b-83ca-9b87067c4d15mike.gaalhttp://social.technet.microsoft.com/Profile/en-US/?user=mike.gaalSecurity Compliance Toolkit - Server 2008 R2?Hi guys - any proposed release date on this? Or can we do the duplicate the baseline trick and change the OS version in DCM?Tue, 01 Dec 2009 05:24:32 Z2009-12-01T05:24:32Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/a55a4cfa-75ff-42ad-9cd8-dfd22a950d3ahttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/a55a4cfa-75ff-42ad-9cd8-dfd22a950d3ajasono1001http://social.technet.microsoft.com/Profile/en-US/?user=jasono1001IT Compliance Management Series for Windows - Beta Review Program Now Available<span style="line-height:115%;font-family:'Calibri', 'sans-serif';color:black;font-size:12pt"><strong><span style="font-family:'Calibri', 'sans-serif';color:#1f497d"><a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=BD930882-0D39-4900-9A79-B91F213ED15D&amp;displaylang=en">Download the IT Compliance Management Series for Windows</a></span></strong></span> <p class=MsoNormal style="line-height:normal;margin:0in 0in 0pt"><span style="color:black"><span style="font-family:Calibri"><span style="font-size:small"><br/>We've just kicked off the new IT Compliance Management Series with the Beta Review program of its first two releases:</span></span></span></p> <p class=MsoListParagraphCxSpFirst style="line-height:normal;text-indent:-0.25in;margin:0in 0in 0pt 0.5in"><span style="font-family:Symbol"><span><span style="font-size:small">·</span><span style="font:7pt 'Times New Roman'">         </span></span></span><span><span style="font-family:Calibri"><span style="font-size:small">IT Compliance Management for Windows Server 2008 and Windows Server 2008 R2</span></span></span></p> <p class=MsoListParagraphCxSpLast style="line-height:normal;text-indent:-0.25in;margin:0in 0in 0pt 0.5in"><span style="font-family:Symbol"><span><span style="font-size:small">·</span><span style="font:7pt 'Times New Roman'">         </span></span></span><span><span style="font-size:small"><span style="font-family:Calibri">IT Compliance Management for Windows 7</span></span></span></p> <p class=MsoNormal style="line-height:normal;margin:0in 0in 0pt"><span><span style="font-size:small"><span style="font-family:Calibri">For more information about these releases, check out the new post in the announcements section above. <span> </span>Please stay tuned for additional forthcoming releases to the series, and in the meantime, we’d love to receive your feedback on these.</span></span></span></p> <p class=MsoNormal style="line-height:normal;margin:0in 0in 0pt"><span><span style="font-size:small"><span style="font-family:Calibri">Thank you!</span></span></span></p> <p class=MsoNormal style="line-height:normal;margin:0in 0in 0pt"><span style="font-family:Calibri;font-size:small">Jason Osborne</span></p> <span style="line-height:115%;font-family:'Calibri', 'sans-serif';font-size:11pt">GRC Program Manager</span><br/>Tue, 10 Nov 2009 16:45:25 Z2009-11-10T16:47:52Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/9384ef19-463f-46a4-ae94-ce07619164b9http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/9384ef19-463f-46a4-ae94-ce07619164b9Kay Gizahttp://social.technet.microsoft.com/Profile/en-US/?user=Kay%20GizaPDF Download: Benefits of Regulatory Requirements with respect to Business Optimization - An IT-Infrastructure Compliance Maturity Model for Management, Compliance and IT Stakeholders<p><a href="http://www.microsoft.de/">Microsoft Germany</a> (Author: <a href="http://blogs.technet.com/michaelkranawetter/default.aspx">Michael Kranawetter</a> (<a href="http://www.xing.com/profile/Michael_Kranawetter">Xing-Profile</a>)) published in cooperation with <a href="http://www.experton-group.de/">Experton Group</a> a whitepaper, in English language and as well in German language: Benefits of Regulatory Requirements with respect to Business Optimization - An IT-Infrastructure Compliance Maturity Model for Management, Compliance and IT Stakeholders<br/>This document describes an approach that – like the <a href="http://en.wikipedia.org/wiki/Pareto_principle">Pareto principle</a> – takes the phenomenon of distribution of effort into account. Keeping track of the fundamental issues and focusing on solving those takes us far closer to our goal – compliance. The focus here will be on aspects of infrastructure compliance, which are naturally very closely linked to the topics of availability, trust, and integrity, and thus build a bridge to information security. Does this mean that the document is for security experts only? On the contrary: At the end of the day, the aim is to create a communications basis for mutual understanding that allows the reader to gain a foothold in the field of compliance at various levels and from various viewpoints using a variety of approaches. The document can be read by managers, technical decision makers and IT experts alike. Start where you feel most at home.<br/><br/><strong>You could find the PDF-Document in this Blog-Article: <a href="http://www.giza-blog.de/DownloadThemaITCompliancePDFDeutschEnglish.aspx">Download: Issue: IT-Compliance [PDF Deutsch / English]</a></strong><br/>Furthermore, you could switch the language with the Microsoft Translator Widget on the site.<br/>But sure, you could scrolling down and you will find at the end of the site the englisch Download-Hyperlink.<br/><br/>Best wishes,<br/>Kay</p> <hr class=sig> http://www.giza-blog.de/Sun, 28 Jun 2009 14:47:48 Z2009-07-15T15:58:16Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/616aeb2b-52b2-4e85-a8f9-4264ac98dfe1http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/616aeb2b-52b2-4e85-a8f9-4264ac98dfe1Jeffrey Mhttp://social.technet.microsoft.com/Profile/en-US/?user=Jeffrey%20MWhat's on your compliance wishlist for Windows Server 2008?Are you an IT professional that has been assigned the task of 'making Windows Server compliant' with your organization's governance, risk, and compliance (GRC) requirements? Are you the IT professional auditors grill for compliance configuration answers? If so, we need your feedback!<br/><br/>1. Where do you go for GRC information pertaining to Windows Server 2008 and other Microsoft products?<br/>2. What Windows Server 2008 settings and features would make compliance easier for your organization?Tue, 23 Jun 2009 16:46:52 Z2009-06-23T16:46:53Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/522233be-ae4c-416a-ae73-64b285ba84d9http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/522233be-ae4c-416a-ae73-64b285ba84d9Jeffrey Mhttp://social.technet.microsoft.com/Profile/en-US/?user=Jeffrey%20MQuestion for IT Staff: What IT compliance configuration problems plague IT staff most?Often IT is called upon by management to 'make IT compliant' with governance, risk, and compliance requirements. All to often the organization has not aligned business and IT goals, making the problem more difficult to address. If you have ever been assigned compliance management duties or tasks in any IT environment, we would like your responses to the following questions.<br/><br/>1. How are governance, risk, and compliance (GRC) requirements communicated to the IT department?<br/>2. How does your IT department plan and implement a GRC compliance program?<br/>3. Where does your IT department search for GRC related information on Microsoft product configuration and operation?Tue, 23 Jun 2009 16:40:09 Z2009-06-23T16:40:09Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/8c214cdf-4eb9-4782-88e3-14be08db5d89http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/8c214cdf-4eb9-4782-88e3-14be08db5d89BrockSDhttp://social.technet.microsoft.com/Profile/en-US/?user=BrockSDForum or portal for questions about Security AcceleratorsHi,<br/><br/>I'm trying to find a place to ask questions specifically about the Security Solution Accelerators and their use.<br/>Where can I do that or is there such a place yet?Sat, 13 Jun 2009 17:13:27 Z2009-06-17T15:24:17Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/840f3eee-2f36-46ed-95ab-da9b5093a13bhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/840f3eee-2f36-46ed-95ab-da9b5093a13bJeffrey Mhttp://social.technet.microsoft.com/Profile/en-US/?user=Jeffrey%20MFAQ: Will the Compliance Planning Guide map every GRC authority document?<strong>Summary<br><br></strong><em><font color="#000000">(this post is subject to modification at any time)</font></em><br><br>This FAQ explains the GRC authority document mapping strategy within the Compliance Planning Guide. Many will ask why a specific authority document was <font color="#000000">not</font> included, or why more specific guidance was not provided for GRC requirements within mapped authority documents.<br><br><strong>Short Answer:</strong><br><br>The Compliance Planning Guide includes information pertaining to eight GRC authority documents that represent a broad range of GRC subject matter.  GRC authority documents were chosen for their general applicability to world-wide business, GRC subject matter coverage, and breadth of deployment. Future revisions of guidance may include additional mappings to other GRC authority documents, but there are no plans to map every authority document. Consult the forum for GRC authority document-specific postings. We expect to manage GRC authority document-specific guidance through this forum, as it allows others to share their experiences.<br><strong> <br>Frequently Asked Questions:</strong><br><br>1. Will you be mapping to regulation X or standard Y within the published guidance?<br>2. How often will you update mappings when the authority documents inevitably change?<br>3. How were the eight example GRC authority documents chosen?<br>4. Will more GRC authority documents be included in the guidance?<br>5. I understand the idea of GRC authority document examples, but you missed a key component that isn't covered in your example authority documents.  How can I let you know so the next revision of guidance can be improved?<br><br><strong>Answers:<br></strong><br>1. Will you be mapping to regulation X or standard Y within the published guidance?<br><br><font color="#000066">Additional GRC authority documents will not be mapped within the published guidance.  The eight authority documents presently mapped are meant to provide examples of GRC requirements, and how these requirements may be managed through existing or new business process and technology deployments. <br><br>This forum will provide a communication and reference point for all IT professionals interested in the GRC experiences and expectations of others when dealing with GRC subject matter far beyond the provided guidance.  Postings may address any one of the 400+ existing GRC authority documents, experiences of IT professionals, and postings from auditors.  It is expected that this forum will become as valuable a resource (if not more so) than the published guidance.</font> <br><br><font color="#000066">If you have a GRC authority document related question, post it in the forum.<br></font><br>2. How often will you update mappings when the authority documents inevitably change?<br><br><font color="#000066">Each GRC authority document represented within the published guidance refers to the current version of each GRC authority document at the time of publication. If a new version of a represented GRC authority document is released in the future, an announcement will be published in this forum.</font><br><br>3. How were the eight example GRC authority documents chosen?<br><br><font color="#000066">GRC authority documents were chosen for their applicability to world-wide business, representation of GRC focus, and breadth of deployment.</font> <font color="#000066">Chances are high that the GRC requirements within these authority documents are shared with other authority documents applicable to your organization.  Consult your GRC subject matter expert to determine where these commonalities exist.</font><br><br>4. Will more GRC authority documents be included in the guidance?<br><br><font color="#000066">Additional GRC authority documents may be included within the next version of guidance, depending upon customer needs. The guidance is not meant to map all GRC authority documents, but rather demonstrate an effective method by which an organization can manage any GRC authority documents applicable to the organization.</font><br><br>5. I understand the idea of GRC authority document examples, but you missed a key component or requirements that isn't covered in your example authority documents.  How can I let you know so the next revision of guidance can be improved?<br><br><font color="#000066">Post in the forum! We really want to understand how technology can relieve the burden of compliance.  There is no better way than hearing from you. You may be a GRC expert, or new to this material.  Whatever your level, your experiences are immensely valuable to the community. You are definitely not alone, and a dedicated team at Microsoft wants to hear what you have to say.  Your comments can result in significant changes to one or more Microsoft products, and personal recognition in future guidance.<br></font><br><br><br>Tue, 04 Nov 2008 19:49:27 Z2009-04-25T19:55:03Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/dfd8c124-39d3-440c-b1b2-091adaf818c6http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/dfd8c124-39d3-440c-b1b2-091adaf818c6Ted Dziekanowskihttp://social.technet.microsoft.com/Profile/en-US/?user=Ted%20Dziekanowski2009 Cybersecurity ActA worthwhile read.  An annuity if it passes and you have the right credentials.  <a href="http://cdt.org/security/CYBERSEC4.pdf">http://cdt.org/security/CYBERSEC4.pdf</a>Sat, 04 Apr 2009 20:29:22 Z2009-04-08T15:29:27Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/401cf9d4-69d8-4cc5-98ba-3caaa839e6c4http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/401cf9d4-69d8-4cc5-98ba-3caaa839e6c4Ted Dziekanowskihttp://social.technet.microsoft.com/Profile/en-US/?user=Ted%20DziekanowskiTrainingAny plans regarding providing end user training for the Compliance product line?  Do you see any tie-in to the System Center product line which has a lot of MOF running through it.<br><br>Ted Dziekanowski Wed, 26 Nov 2008 00:22:08 Z2009-01-05T17:05:20Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/a7acf862-4d01-4252-b77e-0026d4109fbchttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/a7acf862-4d01-4252-b77e-0026d4109fbcFrank Simorjayhttp://social.technet.microsoft.com/Profile/en-US/?user=Frank%20SimorjayTechcenters<p>Here is a general question to eveyone.<br><br>Do you use techcenters/technet as a primary means of getting technical information from Microsoft?<br><br>For instance, are you aware of <a href="http://www.technet.com/regulatorycompliance">www.technet.com/regulatorycompliance</a> as a compliance technet site?</p> <hr class=sig> FrankTue, 09 Dec 2008 18:47:42 Z2008-12-13T02:24:51Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/dd149d2d-4d5f-479f-b690-a0cce7fb6f32http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/dd149d2d-4d5f-479f-b690-a0cce7fb6f32dmccormickhttp://social.technet.microsoft.com/Profile/en-US/?user=dmccormickEnterprise Compliance Solution Frank,<br><br>I was interested to hear about the compliance solution you are working on.  We have a SAAS solution built in .NET and SQL Server that addresses big chunks of the governance, risk and compliance headaches companies face.  I am wondering if there are ways we could extend it to integrate into some of the management and security features that are in various Microsoft products or perhaps into this new solution you are working on so that it could better solve our client's problems.  Have you guys published any details on your solution yet?  Please let me know if there are ways to get involved.<br><br>Thanks.<br><br>David McCormick<br>VP Software Development <br>TruArxThu, 13 Nov 2008 14:06:19 Z2008-12-04T19:16:09Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/169f1550-c747-4040-b906-b9c469e236d0http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/169f1550-c747-4040-b906-b9c469e236d0Brian Honanhttp://social.technet.microsoft.com/Profile/en-US/?user=Brian%20HonanWISH: One Tool to map and track controls from various compliance standardsIt would be great is a tool could track and map the verious controls across different standards, e.g. COBIT, ISO 27001, PCI DSS, BS 25999.  This tracking tool can then ensure we do not reinvent the wheel for new compliance projects. <br><br> For example if I have implemented a number of COBIT controls for SOX compliance and  I then need to ensure I am compliant with PCI DSS and then later with ISO 27001, having a repository to map the various controls will help me better plan projects and identify what is in place already thus saving time and money.<br><br>Sun, 19 Oct 2008 22:06:08 Z2008-11-08T22:02:46Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/f0adc0b5-1900-4397-943e-0800f0a1c7eehttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/f0adc0b5-1900-4397-943e-0800f0a1c7eeChase Carpenterhttp://social.technet.microsoft.com/Profile/en-US/?user=Chase%20CarpenterThe IT Compliance Management Guide is now available!<p>The Microsoft <a href="http://go.microsoft.com/fwlink/?linkid=56419">IT Compliance Management Guide</a> is now available!<br><br><font size=2><font face=Arial><span style="color:windowtext">This Solution Accelerator can save you time and money by shifting your governance, risk, and compliance (GRC) efforts from</span> people to technology. Use its configuration guidance to help efficiently address your organization’s GRC objectives with Microsoft technology you may already own.<br><br></font></font><font face=Arial size=2>This Accelerator<b> </b>helps you better understand how an IT process framework can help you implement GRC controls in your Microsoft infrastructure.<br><br></font><font face=Arial size=2>The </font><a href="http://go.microsoft.com/fwlink/?linkid=56419"><b><font face=Arial size=2>IT Compliance Management Guide</font></b></a><font size=2><font face=Arial><b> </b>includes a Microsoft® Operations Framework (MOF) 4.0 companion guide that is based on the <i>Regulatory Compliance Planning Guide.<br><br></i></font></font><span style="font-size:9pt;color:black;line-height:115%;font-family:'Arial','sans-serif'">The <b>IT Compliance Management Resources </b>workbook<b> </b>saves you time by<b> bringing together the information you need. </b>It provides an extensive inventory of GRC-related configuration tasks and guidance organized by Microsoft product name.</span></p>Thu, 30 Oct 2008 22:15:41 Z2008-11-04T21:03:18Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/dfe9a8c2-9b56-46df-813d-a05bd28af499http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/dfe9a8c2-9b56-46df-813d-a05bd28af499Derick Campbell [MSFT]http://social.technet.microsoft.com/Profile/en-US/?user=Derick%20Campbell%20%5bMSFT%5dWISH: Managing and reporting on "Who has access to what?" Please <strong>pile on </strong>and tell us if this Wish is important to you or not.<br><br>Several people have told us that this area is important - and that managing and reporting on who has access to what can be challenging.<br><br>With that in mind - we'd like to know some more details:<br> <ul> <li>Which regulations and standards drive this need the most for you?</li> <li>How do you manage &quot;who has access to what&quot; today? (Process + software)</li> <li>Which systems are most affected by this need - does it apply to everything or only some systems?</li> <li>What are the specific questions your auditors ask related to &quot;who has access to what?&quot;</li></ul> <p>Thanks,<br><br>Derick<br></p><hr size="1" align="left" width="25%">- &quot;Shifting the effort of compliance from people to technology&quot;Tue, 04 Nov 2008 00:26:13 Z2008-11-04T00:26:13Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/65f486e7-7258-46b7-b0d9-e35a2ea2946ahttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/65f486e7-7258-46b7-b0d9-e35a2ea2946aDerick Campbell [MSFT]http://social.technet.microsoft.com/Profile/en-US/?user=Derick%20Campbell%20%5bMSFT%5dHelp us improve Solution Accelerators for you!<p style="margin:0in 0in 0pt"><font style="font-size:14px" face=Calibri>We want to hear what you think about <a href="http://www.microsoft.com/solutionaccelerators">Solution Accelerators</a> - such as the <strong><em>Microsoft Operations Framework</em></strong>, the <strong><em>IT Compliance Management Guide</em></strong>, and our <strong><em>Security Guides </em></strong>– so we can make improvements and build better products.</font></p> <p style="margin:0in 0in 0pt"><font style="font-size:14px" face=Calibri></font> </p> <p style="margin:0in 0in 0pt"><font style="font-size:14px" face=Calibri>Have you tried a Solution Accelerator?  If so, please share your experience with us by completing this short survey: </font><a href="http://go.microsoft.com/fwlink/?LinkID=132579"><font style="font-size:14px" face=Calibri>http://go.microsoft.com/fwlink/?LinkID=132579</font></a><font style="font-size:14px" face=Calibri> (less than ten minutes).</font></p> <p style="margin:0in 0in 0pt"><font style="font-size:14px" face=Calibri></font> </p> <p style="margin:0in 0in 0pt"><font style="font-size:14px" face=Calibri>Thanks,</font></p> <p style="margin:0in 0in 0pt"><font style="font-size:14px" face=Calibri></font> </p> <p style="margin:0in 0in 0pt"><font style="font-size:14px" face=Calibri>Derick<br></font></p><hr size="1" align="left" width="25%">- &quot;Shifting the effort of compliance from people to technology&quot;Mon, 03 Nov 2008 22:32:11 Z2009-04-08T15:30:35Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/96c29fc2-5e15-481e-b9ee-a9548b15f8b0http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/96c29fc2-5e15-481e-b9ee-a9548b15f8b0LA1976http://social.technet.microsoft.com/Profile/en-US/?user=LA1976clients report not detected using DCM and the security compliance management packs for vista I have downloaded the sollution accelerator imported the baseline templates in sscm 2007 sp1 and enabled the agent.<br><br>The reports show at every item not detected.<br><br>Is this sollution accelerator (the vista-enterprise-desktop) not compatible with Vista enterprise SP1?<br><br>I have left all default no changed made to the templates and yes I have assigned the templates to a collectionTue, 21 Oct 2008 10:58:10 Z2008-10-23T20:36:16Zhttp://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/a36acd3a-88f8-4ab6-a1ed-82658fa02be9http://social.technet.microsoft.com/Forums/en-US/compliancemanagement/thread/a36acd3a-88f8-4ab6-a1ed-82658fa02be9Derick Campbell [MSFT]http://social.technet.microsoft.com/Profile/en-US/?user=Derick%20Campbell%20%5bMSFT%5dWish: What's on your Compliance Wish List?Many of you have heard of Solution Accelerators before - but did you know that the Solution Accelerators team is also responsible for driving significant improvements into Microsoft product lines?<br><br>On the Security and Compliance team, we'd like to hear from you - <strong>what software do you want to see from Microsoft that will help you with your Governance, Risk, and Compliance (GRC) needs?</strong><br><br>Let us know what you want.  Simply create a new discussion here in this forum, and <strong>start your subject line with &quot;Wish: &quot; (no quotes)</strong>. <br><br>When you see a Wish that you agree with - jump on the discussion! Add your own thoughts, offer alternatives, and suggest improvements. Feel free to describe how you're fulfilling the need today to give others a hand. You can also talk about the regulatory or GRC reasons behind the wish - what's really driving this particular need?<br><br>Wishes may be for additional features or changes to existing products, or may be new products that Microsoft does not offer today. Don't constrain yourself - be creative!<br><br>Our team will be triaging all the wishes we receive, and working to drive the most important ones into the company as part of our GRC Mobilization effort. We'll make sure these ideas are heard!<br><br>Thanks for helping out,<br><br> <p style="margin:0in 0in 0pt"><font size="+0"><font face=Calibri> </font></font></p> <table style="width:6.75in;border-collapse:collapse" cellspacing=0 cellpadding=0 width=648 align=left border=0> <tbody> <tr> <td style="border-right:#f0f0f0;padding-right:0in;border-top:windowtext 1pt solid;padding-left:0in;padding-bottom:0in;border-left:#f0f0f0;width:3.75in;padding-top:0in;border-bottom:#f0f0f0;background-color:transparent" width=360> <p style="margin:0in 0in 0pt"><font face="'Segoe UI','sans-serif'" size=1>Derick Campbell | Group Program Manager<br></font><font size="+0"><a title="http://www.microsoft.com/technet/security/topics" href="http://www.microsoft.com/technet/security/guidance"><font face="'Segoe UI','sans-serif'" color=blue size=1>Solution Accelerators - Security and Compliance</font></a></font> </p></td> <td style="border-right:#f0f0f0;padding-right:0in;border-top:windowtext 1pt solid;padding-left:0in;padding-bottom:0in;border-left:#f0f0f0;width:3in;padding-top:0in;border-bottom:#f0f0f0;background-color:transparent" valign=top width=288 rowspan=2> <p style="margin:0in 0in 0pt"><font size="+0"><a title="http://www.microsoft.com/solutionaccelerators" href="http://www.microsoft.com/solutionaccelerators"><font style="font-size:16pt" face="'Segoe UI','sans-serif'" color="#3366ff">SOLUTION<b><i>ACCELERATORS</i></b></font></a><br></font><font face="'Segoe UI','sans-serif'" size=1><br><b>Did you know?</b> Over half of the <a href="http://www.microsoft.com/technet/security/downloads/default.mspx"><font color=blue>top 30 security downloads</font></a> on Microsoft.com are from our team.</font> </p></td></tr> <tr> <td style="border-right:#f0f0f0;padding-right:0in;border-top:#f0f0f0;padding-left:0in;padding-bottom:0in;border-left:#f0f0f0;width:3.75in;padding-top:0in;border-bottom:#f0f0f0;background-color:transparent" width=360> <p style="margin:0in 0in 0pt"><font face="'Segoe UI','sans-serif'" size=1>- &quot;Shifting the effort of compliance from people to technology&quot;<br><br> </font></p></td></tr></tbody></table> <p style="margin:0in 0in 0pt"><font size="+0"><font face=Calibri> </font></font></p> <p style="margin:0in 0in 0pt"><font size="+0"><font face=Calibri> </font></font></p> <p style="margin:0in 0in 0pt"><font size="+0"><font face=Calibri> </font></font></p> <p style="margin:0in 0in 0pt"><font size="+0"><font face=Calibri> </font></font></p><br>Mon, 29 Sep 2008 17:25:24 Z2008-09-29T19:32:48Z