Security Experts:

long dotted

NEWS & INDUSTRY UPDATES

Qualys and FireMon have announced the integration of QualysGuard Vulnerability Management (VM) and FireMon Security Manager with Risk Analyzer.
There are several vocal critics, prominent voices in the security industry, who believe training users to recognize security threats won't help organizations solve the cyber-security problem.
U.S. based banks recently affected by the wave of denial-of-service campaigns against financial institutions disclosed some attack details to the Securities and Exchange Commission.
A new report from McAfee outlines the growing risks in the sales and commerce industry, due in part to the mix of legacy and newer Point of Sale (POS) systems, in addition to secondary market hardware.
Modulo, a provider GRC solutions, launched a new Vendor Risk Management solution to help enterprises identify and classify high risk vendors and cloud providers, and streamline the risk and compliance evaluation process.
Skyhigh Networks, a Cupertino, California-based startup offering cloud visibility and control solutions, on Monday emerged from stealth mode and officially launched its new solution designed to help enterprises know which cloud services their employees use.
The Health Information Trust Alliance (HITRUST) has established a new working group to focus on developing an information sharing framework to address cyber-security incidents in the healthcare sector.
A little over a third of security professionals believe their organizations are investing in the wrong security technologies, according to a recent survey from SafeNet.
RSA launched RSA Security Analytics, a new unified platform that the company hopes will be the cornerstone of next generation security operations centers.
Organizations will shift to using big data analytics within the next few years to intelligently assess threats and risks and make better security decisions, RSA said in a recent brief.

FEATURES, INSIGHTS // Risk Management

rss icon

Chris Hinkley's picture
Without the internal and external safeguards working in conjunction, your vulnerability will spike and your performance will suffer as a by-product -- two things you can’t afford to have happen.
Rod Rasmussen's picture
In order to win the war with today’s cybercriminals that are using the same attack vectors on a massive scale, a real-time, automated information platform that pre-empts ongoing attacks is an imperative.
Wade Williamson's picture
The challenges of Java-based threats go deeper than your average 0-day vulnerability, and these challenges will likely affect your approach to controlling them. Organizations need to weigh the risk of a technology against the reward for the enterprise.
Nick Cavalancia's picture
There is no way to deal with the risk that BYOD brings. Between Android and iOS, there are millions of apps readily available for download, countless numbers of which open up doors in BYOD technologies that hackers and cybercriminals can easily stroll through.
Mark Hatton's picture
Many organizations continue to focus on “intelligence after the fact,” rather than applying their focus and investments on thwarting attacks before they happen.
Ram Mohan's picture
Security isn’t sexy. In fact, many people think it’s boring. When it comes to selling security, whether as a concept or in a true “sales” context, the lack of interest in security is compounded by the fact that doesn’t seem urgent— until it is.
Dr. Mike Lloyd's picture
Measuring security posture is hard, but is being done by many network security teams. Of course, once you have meaningful measurement of your situation, you begin to pick up all kinds of bumps in the road you couldn’t even detect before.
Chris Poulin's picture
There’s no one size fits all disaster survival plan: a server compromise is vastly different than full scale nuclear attack, and both require situationally appropriate responses.
Jon-Louis Heimerl's picture
In a perfect world, we would not stress this awareness for one month only. Awareness should be a constant, ongoing effort.
Oliver Rochford's picture
Oliver makes the case for why the way that security awareness training is often approached is flawed. But if done in the right way, Security Awareness Training can provide a lot of value and benefit the security posture greatly.