Multi-Platform Enterprise Mobility Solutions

June 30, 2009 by ADMIN · Leave a Comment

Britt Womelsdorf, Principal Systems Consultant, Sybase iAnywhere

There are products out there claiming to be “Enterprise Solutions” that only support a single mobile operating system, or, worse yet, a single version of a single operating system. While these products may do an admirable job managing the subset of devices that run that OS, what about the rest?

Heartland (HPY) Implements E2EE System

June 30, 2009 by ADMIN · Leave a Comment

From Heartland Payment Systems

“Monday’s successful test involved Zones 1, 2, 3 and 4,” detailed Steven M. Elefant, Heartland’s executive director of end-to-end encryption. “We believe that protecting data in these zones alone will significantly impact the protection of cardholder data.

Making PCI Stand For Coordination & Impact

June 29, 2009 by ADMIN · 1 Comment

Daniel Wallace, Information Security Consultant

It will be no small task in terms of cost and effort for many of the impacted companies to make the transition from self-assessment to onsite 3rd party assessment. However, there are ways to lessen the burden and actually drive business-value from the engagement.

Audits and the Change Management Process

June 29, 2009 by ADMIN · Leave a Comment

By Gene Kim, CTO of Tripwire and co-founder of the IT Process Institute

If the auditor observes that no one is showing up to the change management meetings, authorizations are rubber stamped without any real evaluation, unauthorized changes and unplanned outages are occurring regularly, then she will likely flag this as a potential high risk area.

Sun Tzu and The Art of CIO Success

June 28, 2009 by ADMIN · Leave a Comment

By Steven Fox, Founder of SecureLexicon

The CIO is a “General”. Generals are not concerned with how the weapons function or how the rank-and-file are performing. This is the job of the lieutenants. The General focuses on the strategic application of resources on the battlefield.

Model Employees May Be The Insider Threat

June 28, 2009 by ADMIN · 1 Comment

By Rachel James, Author and Cybercrime Authority at ID Experts

It is important to realize that insider threats are not just a people problem, but a technical problem as well. There are certain controls and best practices that you can follow to help identify and address threats and minimize your organizations risk.

Inside the Due Diligence Value Proposition

June 28, 2009 by ADMIN · Leave a Comment

By Greg George, Managing Partner of GTI Advisors

Due Diligence can be categorized as a fraud management tool, an information gathering exercise or just a shield that will provide some value in case something goes wrong. It is important to undertake a DD for all transaction irrespective of the value. You cannot evaluate it in terms of ROI. Consider it as a cost just like a premium paid for insurance.

Cyber Security Week In Review: June 27th

June 27, 2009 by ADMIN · 1 Comment

From The Internet Security Alliance and Information Security Resources

Exploits of unpatched Windows bug will jump, says Symantec; Mozilla tackles XSS vulnerabilities with new technology; New Facebook blog: We can hack into your profile; Red Condor’s Spam Trip Wire detects new virus; Adobe Releases Update for Shockwave Player; Gates Creates Cyber-Defense Command; Google clamps down on ‘malvertising’; Hacked high-profile Twitter accounts still spreading malicious links; Spam, Phishing, and Malicious Code Related to Recent Celebrity Deaths.

On Communications Sector Cyber Security

June 26, 2009 by ADMIN · Leave a Comment

From The Internet Security Alliance

From an “all hazards” approach, we worry about the overall architecture of the system. If there were a major incident in one facility, will we and our customers have what they need to survive a major hit?

Sensitive Data and the Pharmacy Industry

June 26, 2009 by ADMIN · Leave a Comment

By Kat Sanders of Pharmacy Technician Certification

There is a surfeit of Information today, and although we have come up with ways and means to store them for eternity, we are still not able to ensure their security. Information is valuable only as long as it remains protected, and once in the hands of people who are likely to misuse it, it turns into a recipe for disaster.

Next Page »