Posts Tagged ‘security’

Network Security Monitoring Tools for ‘Lean Forward’ Security Programs

|
Comments Off
The increase in sophisticated targeted attacks requires many organizations to take a "lean forward" approach to network security monitoring. Here, we outline several advanced tool categories that can help.

Key Trends in Application Security Testing

|
Comments Off
Security and application managers should abide by the key trends defined in this research when planning application security defenses and selecting technologies.

The Structure and Scope of an Effective Information Security Program

|
Comments Off
The CISO must integrate security with the enterprise fabric. The first step is establishing a formal program that defines the enterprise's key information security principles, resources and activities.

Understanding Vulnerability Management Life Cycle Functions

|
Comments Off
The vulnerability management life cycle is the key process for finding and remediating security weaknesses before they are exploited. Policy definition, assessment, shielding, mitigation and monitoring are required.

SIEM Enables Enterprise Security Intelligence

|
Comments Off
Security information and event management technology integrates security event data with context about users, data, applications, assets, threats and vulnerabilities. SIEM enables enterprise security intelligence.

Research Roundup: Business Continuity Management and IT Disaster Recovery Management, 4Q10

|
Comments Off
Business continuity management and IT disaster recovery management are cross-disciplinary topics that must be addressed by managers in multiple corporate roles. Gartner's research summary provides business and IT leaders with guidance to keep up with the important practices and latest trends.

Options for Coping With New Identity Islands in the Cloud

|
Comments Off
Software-as-a-service applications rarely provide easy integration with established enterprise identity and access management functions. Enterprises need alternatives to using SaaS vendors' proprietary IAM capabilities.

Protecting the Enterprise: Verifying the Performance of Complex Network Security Products

|
Comments Off
Security technology vendors' performance and throughput claims should not be taken at face value. Testing the performance of complex security products is crucial to making the right buying decisions, preserving or improving current user experience, and preventing negative impact on existing network infrastructure.

Protecting the Enterprise: Verifying the Security Effectiveness of Complex Network Security Products

|
Comments Off
Security technology vendors' effectiveness and coverage claims should not be taken at face value. With a constantly changing "threatscape," testing the security effectiveness of complex security products against the threats your enterprise faces is crucial to making the right buying decisions.

WikiLeaks Incident is an Opportunity to Improve Information Governance

|
Comments Off
The recent publication of confidential U.S. State Department cables on the WikiLeaks' website and the pronouncements regarding the impending release of sensitive corporate information provides CIOs and information managers with an opportunity to strengthen information governance.