“I do owe a lot of that to Sarbanes Oxley and when they see they could be held criminally liable. Say what
you will about the regulations they have really helped the IT security realm because in the past audit has
always been fairly well understood. The role of an auditor is clear. But information security hasn't been. It's
always been identified as hacker deterrence and monitoring and logging in that up until recently it stepped
outside of the operational, and really outside of the IT realm and more into a business partnership. That's
why I like the role here, it's evolving outside of traditionally it was just IT security everything in the IT group,
how data bits are moving, now it's more information. It's evolving to information, and procedures, and
business functions, rather than just the technology side of it.”