Forward-thinking Companies are Avoiding Checkbox Compliance and Fire-drill Responses to Security Incidents in Favor of Sustained, Continuous, and Auditable Risk Management and Compliance Initiatives. But there’s Still Work to be Done.
Hi, what are you looking for?
Forward-thinking Companies are Avoiding Checkbox Compliance and Fire-drill Responses to Security Incidents in Favor of Sustained, Continuous, and Auditable Risk Management and Compliance Initiatives. But there’s Still Work to be Done.
According to recent research conducted by Mimecast, while 71% of employees understand the risks, 47% still feel that it’s okay to use personal accounts to send work emails. The goal of Mimecast’s Generation Gmail Research project is to reveal how email is used by employees across the globe. And, in this particular segment, how attitudes about work email are changing and how progressive employers are managing this core communication channel.
New VMware View Client for iPad Lets Enterprise and Government Users Securely Access Their Virtual Desktops From AnywhereVMware today released a client that provides iPad users with a simple and secure way to access virtual Windows desktops, applications and data from their iPad. Available for free in the Apple App Store, the new VMware View Client, in combination with VMware View, delivers a modern desktop optimized for the iPad's high-resolution Multi-Touch display.
Compliance Requirements, Legal Ramifications, and other Drivers with Real World Risks and Consequences are Often the Best way to Bend the Ear of a Busy Executive
The inventor of the popular SecurID security tokens used for two-factor authentication, now owned by RSA, has come public with his latest endeavor, focused on mobile payment technology and identity authentication.
Fraudster used Genuine Medicare Beneficiary Information Illegally Obtained, Setup Clinics that Never Physically Existed
According to recent statistics coming from Dasient, a firm that helps discover and combat Web-based malware, “malvertising,” a growing method used to distribute malware via advertising tags served through an unsuspecting publisher’s Web site, saw a significant spike in Q4 2010. Dasient estimated that in the last quarter of 2010 there was a 25% increase in malvertising [ad] impressions based on the same set of networks the company monitored in Q3.
Today, Symantec and the Ponemon Institute released the 2010 Annual Study: U.S. Cost of a Data Breach, showing the rising cost of data breaches over the last five years. The average organizational cost of a data breach increased to $7.2 million. The study also found that for the second straight year organizations' need to respond rapidly to data breaches drove the associated costs higher. The sixth annual Ponemon Cost of a Data Breach report is based on the actual data...
Europe's Cybersecurity Agency Publishes Botnet Report and Policy-Level Considerations
WhiteHat Security, a Santa Clara, California based provider of Web site risk management solutions, today released its most recent Web site Security Statistics Report. According to the report, the average Web site fell into the "always" and "frequently" vulnerable categories and was exposed more than 270 days of the year.
Rapid7 today announced upgrades to its Metasploit Pro penetration testing solution. The latest version (v3.6) adds an enhanced command-line feature set and detailed PCI reports with pass/fail information to provide users with a comprehensive view of compliance posture with PCI regulations.
Data Security: The Currency of Business Success. Start Building its Reserves Now!
Statistics show Trojan.Win32.Generic!BT Holding as Number One Detection for FebruaryGFI Software has announced the top 10 most prevalent malware threats for the month of February 2011 as detected by scans performed by its anti-malware solution, VIPRE Antivirus, and its antispyware tool, CounterSpy.
Following the recent malware infection of over 50 apps from the Official Android Market last Tuesday, Google, after initially removing the apps in question rather quickly, had remained relatively quiet on the issue.
SaaS Providers - A Roadmap of What NOT to do to Your Customers I’ve gone on and on about how cloud providers offer services as soon as said services are available. Security isn’t the priority. Feature set is driven by monetary momentum. Development dollars swirl around new features for new money. That’s just part of the joy of capitalism. Cloud providers, this one is for you. I present to you a list of “What Not to Do to Your Customers.”
Related Tech Track: Mitigation of Security Vulnerabilities on Android
Palo Alto Networks, the company best known as being an early innovator in next generation firewalls, today announced a series of product updates and services that clearly appear to be the most important since the company’s initial launch.
Implement Ironclad Cloud Security Today to Thwart Malware Attacks of the Future
Google has acquired Zynamics, a small company based in Germany that provides software analysis tools to help with malware analysis using reverse engineering. Though an official announcement has not been made, Google did acknowledge the acquisition. "We’re delighted to have the zynamics team aboard and hope their tools and skills in fighting malware will help us better protect Google’s users," a Google spokesperson told SecurityWeek this afternoon.
How has the economy impacted compliance and ethics in the last few years? And what’s in store for 2011? According to an annual survey conducted by the Society of Corporate Compliance and Ethics (SCCE) and the Health Care Compliance Association (HCCA), despite the hurting economy, a greater number of compliance professionals report an increase in compliance staff and budgets along with greater of job security in 2010.