RealSecurity

A Different Perspective of Information Security


Tag overview for: 'security'

Entries on this site with 'security'

  • Adaptive Security Management Architecture
    When attending the InfoSec Security Conference in Orlando last week I had the opportunity to sit down with Rich O’Hanley, editor in chief for CRC Press, and Stephen Fried,
  • Cloud Security Challenges
    Why does the cloud represents such a huge issue for security? Let's talk "high-level" and very general for a little. First and foremost, what is "the cloud"? In pretty sim
  • Cloud Security
    There has been a great deal of discussion concerning cloud computing. In the past we called these hosting solutions, managed services, and other less sexy things. However,
  • Security and the Digital Disease
    Epidemiology is a fascinating subject, one I believe the information security industry can learn from. An interesting element is the sharing of information concerning viru
  • The Cloud Application
    Many enterprise organizations are typically focused on infrastructure security, such as firewalls and IDS. This is understandable because of history and compliance pressur
  • Passwords, again?
    Is it me or does the topic of password security pop up regularly? It’s like a broken record. To be fair, security in general is having difficulty evolving, so why shouldn’
  • Microsoft knew for a year
    It looks like Microsoft finally admitted it knew about the IE6 & IE7 bug in ActiveX control "msvidctl.dll" file that supports streaming video content which is vulnerable t
  • A knight in shining Chrome
    With Google’s announcement they’re entering into the world of operating systems with Google Chrome OS has generated some controversy – mostly around security. Statements s
  • MasterCard Changes Level 2
    Last month MasterCard (MC) changed the requirements for level 2 merchants to include an on-site assessment as opposed to performing a self-assessment. The definition of le
  • Policy Purgatory
    I see a lot of questions about security pop up asking everything from what’s the best way to secure a PDA to controlling the use of USB ports on laptops. In every case, wi
  • Compliance vs. Security
    Ask any security professional, “Does compliance mean you’re secure?” and you will get a resounding “No!” But, let’s think about that for a moment. Before the wave of compl
  • Security Kung-Fu
    As difficult as it may be to see through the fog of economic uncertainty, there is enormous opportunity -- and today’s challenges should be seen as a tipping point for the
  • It’s not ROI, it’s VOI
    If you’re a reader of this blog, know me, or have seen me speak you know that I’m very much about security enabling the business and operating in business terms. For years
  • Security is not an Adjective
    I spend a lot of time traveling and always see interesting stuff within the context of security in airports, hotels, and the like. I won't bore you with standard jokes abo
  • State of the PCI industry before PCI DSS?
    His question: Hi folks, I know that there is research material out there that can address the state of the PCI industry prior to the DSS requirements. But I wanted to get
  • ISO-27000 Series
    I read in article recently that finally pushed me over the edge concerning security terminology and how the ISO standards are referred to. The statement that did me in was
  • Changing Threats
    Sometimes you have to state the obvious just to make sure the message sinks in and this is an important message we all need to acknowledge: The threat landscape has change
  • Hacker 2050
    In 2050, information is everything and access to it will be omnipresent and seamless. Connected micro-technology will be commonplace, embedded in everything from chairs, c
  • Complicated Basics
    So, you’re tracking the number of worms stopped at your firewall, the number of patches deployed, and the volume of vulnerabilities in your environment and present to the
  • Close the Gap, Before you Fall in it
    I became immersed in security back in 1990, or shall I say thrown into it. Working as a mechanical engineer for a research and development firm designing unique valves tha
  • The Art of War
    There are several books, articles, and models providing guidance for assessing information security risk. Nevertheless, regardless of the amount of information one consume
  • Virtual Security
    In 1996 I found a tiny package floating around the Internet called VMware. I booted up my Linux laptop and proceeded to install this little animal. Within minutes I starte
  • Security Answers the Call
    In 1998, I was working in Germany designing a 5000 site IPSec VPN solution encompassing 125 countries for a logistics company. The options were few. Timestep had the best
  • Bigger Picture
    There has been a great deal of industry static about Microsoft’s WMF vulnerability and the giant’s reaction to the critical gaping hole. In short, the WMF vulnerability pr
  • The Lion and the Gazelle
    There are many discussions concerning infosec’s value to the business and its role in the value chain. Every company produces, ultimately, goods and/or services that are t
  • ISO-17799:2005
    In 1996, the British Standards Institute (BSI) published the BS-7799 information security management standard defining a management system for the oversight of information
  • Measuring the Maturity of Your Security Program (Part 1)
    Today, organizations have expended significant resources in implementing various security controls. Thanks to best practices, the evolution of technology, and the increasi
  • The Walls of Jericho
    In February of this year the OpenGroup established a new forum called Jericho , whoes vision is focused on developing and promoting a new security architecture, one devoid
  • Visa, Everywhere You Want to Be
    Fraud is the bane of the financial industry's existence. Financial institutions are constantly battling forgery, impersonation, and out-right theft and the advent of compu
  • Diminishing Perimeter
    For years the perimeter has been the focal point of security technology. What was once routers with access control lists designed to block traffic founded on basic charact
  • Inside Out
    Ninety-seven CIOs sat watching the presentation about infosec in an extravagant 19th century grand ballroom in downtown Philadelphia. There were executives from financial
  • Network Security Rebirth
    As soon as there were networks there were people using them to gain unauthorized access remote systems. Today, networks are everywhere and the Internet is the ultimate net
  • Infinite Loop
    Although information security has gained unparalleled business-level attention in the last few years, people remain enamored by hacker tools and technical tricks of the pa
  • Digging Trenches
    With the increasing demand from the business to better utilize IT and vast amounts of information more effectively, web services and service oriented architecture (SOA) so
  • Hackers Ahead
    As far back as I can remember I’ve always heard the axiom, “Hackers are always ahead of you.” It’s a saying that has the potential to release you from the torment of insec
  • Did you sign that?
    With the increased demands being placed on organizations to ensure privacy, integrity, and confidentiality in digital domain, the need for non-repudiation and the use of d
  • The Last Rights for Passwords
    To be completely forthright, I have no clue when the first password was used to control access to a computer and I don't really care. I do know that it set in motion a sta
  • Your Identity
    More and more companies are expressing interest in Identity Management (ID Mgt) solutions to compensate for the increasing number of user management directories & database
  • Got Spam?
    According to Symantec's March, 2005 threat report, spam, usually defined as junk or unsolicited email, made up over 60% of all email traffic during the reporting period fr

Related tags

e_mail, spam

External feeds for 'security'

Click icon for a list of links on 'security'

Technorati Del.icio.us Furl Ma.gnolia Google Icerocket TagZania 43 Things