SEARCH RESULTS
 
Showing 1-10 of 13 records
 
Expand article

Understanding and Selecting a Database Activity Monitoring Solution: Part 4, Alerts, Workflow, and Reporting

2008-02-29 20:06:08 by rmogull in securosis.com
 
...assign, share, and route incidents to different users within the system. Im a big fan of having a drop down field to change incident status right on the incident row. The system should also support role based administration, allowing you to assign specific handlers/administrators based on the policy violated, database affected, or other...
 
 
 
 
 
Expand article

Leveraging Compliance For Security

2008-02-18 18:15:05 by dmortman in securosis.com
 
...Assign to each process business owners who are responsible for maintaining and documenting the process. Record all changes manually or automatically. When anomalies are observed or something breaks, consult the change log for clues about the likely origin for the malfunction. The documentation serves the additional purposes of increasing...
 
 
 
 
 
Expand article

Group Policy Object security in Windows

2008-02-28 10:56:04 by David Nielson, Associate Site Editor in WhatIs: Enterprise IT tips and expert advice
 
Many of our readers have been asking questions about the security of Group Policy Objects (GPOs) in Windows so far this year. With this in mind, the February installment of our "Ask the Security Expert" roundup focuses on exactly that. Learn how to manage user access, how to assign GPOs at the OU level and how to assign logon rights in this podcast
 
 
 
 
 
Expand article

Best Practices For DLP Content Discovery: Part 3

2008-04-17 22:44:34 by rmogull in securosis.com
 
...assign a different incident handler for at rest policies depending on organizational needs. For example, you may decide to assign a specific incident handler to review all storage related PCI violations, while keeping network violations in the general queue. If you encrypt, quarantine, or otherwise protect files the DLP solutions needs to...
 
 
 
 
 
Expand article

The Oracle speaks

2008-05-07 19:55:42 by HASH0x8472728 in StillSecure, After All These Years
 
...assign a VLAN via RADIUS attributes, you can assign ACLs for that port in addition to assigning a VLAN. This is great if you have the right switches. It helps protect the other endpoints within a quarantine VLAN and adds an extra layer of security. Cisco switches do not have this capability unless youre running Cisco NAC and a Cisco ACS...
 
 
 
 
 
Expand article

Ask the Auditor: Who is Responsible for Information Security?

2007-12-29 06:24:50 by Editor in Security Links
 
...assign information security responsibilities to an information security management function, all parts of the organization have information security responsibilities. Security goals include a mixture of technical, procedural, and oversight controls, all of which should be reviewed or tested to ensure they are (a) adequate, as defined to...
 
 
 
 
 
Expand article

Setting file ACLs with PowerShell part 4

2007-11-29 09:34:00 by Keith Brown in Security Briefs
 
...assigned a value. Here's an example a = 42 [Int32] $b = 42 $a = "this works just fine" $b = "this generates an invalid cast exception This syntax allows you to create type-constrained variables. Now when I assign an object to $b, PowerShell will first try to cast that object to System.Int32 (you could also have used "int", by the way). The...
 
 
 
 
 
Expand article

Would armed security officers in Omaha have saved lives?

The Article has images
2007-12-11 00:17:00 by John Sexton in The Bullet Proof Blog
...assign a Police Officer to watch every entrance, you would need more than 250,000 Police Officers to report for duty on the first day That does not even take into account the number that would be needed to relieve officers on sick leave, admin leave, vacation, promotion, etc. Does anybody really think that we will have a 400,000 strong...
 
 
 
 
 
Expand article

The Daily Incite - March 3, 2008

The Article has images
2008-03-03 08:44:18 by Mike Rothman in Mike Rothman's blog
...assign it a rating based upon perceived risk. The rating then has a bearing on the interest rate those companies have to pay to get access to the funds. What if that same model were applied to security? Could an objective rating be produced that would provide an idea of whether you should do business (and share data) with a potential trading...
 
 
 
 
 
Expand article

"Crawling" Toward SDL

2008-03-06 22:13:00 by sdl in The Security Development Lifecycle