Information Security is still an emerging discipline, with lots of loud voices expressing different opinions as to what is the absolute best way to secure your company. Rather than throw more noise into the echo chamber espousing “best practices”, in this series of blogs, I will be taking a different route. Every company does security differently, with varying degrees of success. No single approach works best for everyone; however, there are several approaches that are wrong for anyone. In this series of blogs, I will be outlining ten wrong approaches to security, in the hope that we can all get better at avoiding these mistakes.
Read more on SecureState's new blog site http://blog.securestate.com/post/2011/04/01/Ten-Ways-to-Fail-at-Information-Security-Part-1.aspx
Read more!
Friday, April 1, 2011
Thursday, March 24, 2011
Taking Data Loss Prevention To Data Loss Acceleration
“OpenDLP is a free and open source, agent-based, centrally managed, massively distributable data loss prevention tool.” This is how creator Andrew Gavin defines OpenDLP. While this tool could be used to monitor sensitive data on hundreds of systems simultaneously, it could also be used to steal massive amounts of data very quickly.
Read more on SecureState's new blog site http://blog.securestate.com/post/2011/03/16/Taking-Data-Loss-Prevention-To-Data-Loss-Acceleration.aspx
Read more!
Read more on SecureState's new blog site http://blog.securestate.com/post/2011/03/16/Taking-Data-Loss-Prevention-To-Data-Loss-Acceleration.aspx
Read more!
Is Your e-file Tax Return Secure?
Find out how secure yours is by reading Ken Stasiak's post on our new blog site here http://blog.securestate.com/post/2011/03/14/Is-Your-e-file-Tax-Return-Secure.aspx
Read more!
Read more!
New Vulnerability Alert by SecureState Now Available!
Find the vulenrability reports each month on our new blog site
http://blog.securestate.com/post/2011/03/08/New-Vulnerability-Alert-by-SecureState-Now-Available!.aspx
Read more!
http://blog.securestate.com/post/2011/03/08/New-Vulnerability-Alert-by-SecureState-Now-Available!.aspx
Read more!
Cleveland OWASP Chapter Meeting Announcement
SecureState is proud to sponsor the Cleveland chapter of OWASP and we are bringing back the quarterly meetings by bringing in some of the top speakers in the application security community. This quarter we have web application security ninja Kevin Johnson that will be speaking. The title of his talk is “Ninja Developers: Application Security Testing and Your SDLC”.
Read more on our new site http://blog.securestate.com/post/2011/03/04/Cleveland-OWASP-Chapter-Meeting-Announcement.aspx
Read more!
Read more on our new site http://blog.securestate.com/post/2011/03/04/Cleveland-OWASP-Chapter-Meeting-Announcement.aspx
Read more!
HIPAA: Rx For End-User Device Risks
HITECH breach notification requirements apply to breaches of “unsecured” Protected Health Information (PHI). Basically, if electronic PHI data is encrypted, purged, or physically destroyed before it is inadvertently disclosed, then it doesn’t count as a breach.
Read more at SecureState's new blog site http://blog.securestate.com/post/2011/03/03/HIPAA-Rx-For-End-User-Device-Risks.aspx
Read more!
Read more at SecureState's new blog site http://blog.securestate.com/post/2011/03/03/HIPAA-Rx-For-End-User-Device-Risks.aspx
Read more!
Tuesday, March 1, 2011
Come Out; Come Out; Wherever You Are…
The title of this blog is typically heard amongst children while playing the game “Hide and Seek.” I use it now as a reference to companies hiding from Privacy Regulations or at the very least avoiding the application of the best practices available when it comes to Privacy Principles.
Why Do Companies Hide From Privacy Regulations?
Read more on SecureState's new blog http://blog.securestate.com/
Read more!
Why Do Companies Hide From Privacy Regulations?
Read more on SecureState's new blog http://blog.securestate.com/
Read more!
Subscribe to:
Posts (Atom)