The two questions only need to be about 150 words each or more.
Question 1: Consider any of the following regulations or standards: Sarbanes-Oxley Act, General Computing Controls, Gramm–Leach–Bliley Act (GLBA), Federal Information Security Management Act (FISMA), Payment Card Industry Data Security Standard (PCI DSS), HIPPA, ISO, and COBIT.

Pick one, research it, and explain the events that lead to its creation. Explain what the goals are and what they seek to achieve. (Be sure to cite sources to substantiate your research)

Question 2: Provide an overview of audits and assessments. Discuss their role in assuring compliance to regulations and standards. Discuss problems establishing or maintaining such controls. (Be sure to cite sources to substantiate your research).

