SEARCH RESULTS
 
Showing 1-10 of 31 records
 
Expand article

Leveraging Compliance For Security

2008-02-18 18:15:05 by dmortman in securosis.com
 
...Establish a process for regular review of these access lists. Quarterly or semi-annual review is fairly standard for sensitive applications, augmented by additional reviews triggered when an employee changes job roles to ensure that privileges are not kept by default beyond their relevance to actual job requirements. In the case of access to...
 
 
 
 
 
Expand article

How to Audit a Log Server?

2008-02-05 18:31:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...establish that your logs will remain useful for investigations, forensics, possibly litigation (offensive and defensive) as well as other purposes, all the way to operational troubleshooting. Some of the regulations, such as PCI DSS do call for log protections (see Req 10 or, while we are at it, go read my PCI book chapter on logs[PDF Also,...
 
 
 
 
 
Expand article

What's the Snag Behind the Spyware

2007-08-01 19:28:00 by jack in adware and spyware
 
...establish continuity of anonymity However, it is an establish fact that the PC functions as a "live" server that is open for any kind of information disseminations with or without the consent of the server; bottom lining the fact, there is always a risk for any transfer of any information even those covered by protection policies between the...
 
 
 
 
 
Expand article

Misconceptions about outsourcing security

2007-12-13 14:05:54 by Khalid Kark in Security & Risk Management
 
...establish security processes and strengthen your operations before you outsource security. Outsourcing may help improve operational control, but the chances of success are increased if the firm has a clear understanding of the processes, expectations and deliverables Outsourcing security is the quickest way to get security controls...
 
 
 
 
 
Expand article

The reason behind the "We're sorry..." message

2007-07-09 11:54:00 by Niels Provos in Google Online Security Blog
 
...establish that we are talking to a human user - and to continue searching. However, automated processes such as worms would have a much harder time solving the CAPTCHA. Several things can trigger the sorry message. Often it's due to infected computers or DSL routers that proxy search traffic through your network - this may be at home or even...
 
 
 
 
 
Expand article

KimsCrafts e-commerce breach affects 4,500

The Article has images
2007-12-14 16:08:39 by Evan Francen in The Breach Blog
...establish credit or alter your credit file KimsCrafts is very concerned with the privacy and security of its customers In addition to reviewing and adopting best practices as they relate to cardholder's information and complying with the security standards put forth by the credit card association, KimsCrafts will also launch a new...
 
 
 
 
 
Expand article

Basel II could be risky for the economy, the Bank of England warns

2008-01-02 08:00:00 by Editor in IT Compliance
 
Its reliance on credit-rating agencies to establish asset risk could put banks on a cyclical roller coaster
 
 
 
 
 
Expand article

Identity Framework Probable Feature List

The Article has images
2007-12-16 06:42:00 by Keith Brown in Security Briefs
...establish a session. I'm guessing that this issues an ASP.NET Forms logon cookie or something equivalent. This is probably one of the things that the HttpModule deals with (reading that cookie and using it to configure HttpContext.User Here are the control's identity-related events SecurityTokenReceived SecurityTokenValidated SignedIn...
 
 
 
 
 
Expand article

CCNP BOOT CAMP

2007-03-26 00:30:00 by MCSE Boot Camp Courses Delhi India in MCSE Training Courses, MCSE Certification Courses, MCSE Courses Delhi India
 
...Establish campus Network using Multilayer Switching Technologies Deploy organizations VPN, QOS and converged networks Troubleshoot an environment that uses CISCO routers and Switches for multi-protocol organisations hosts and services
 
 
 
 
 
Expand article

NERC CIP Rules Out - Logs In!

2008-01-24 13:06:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...establish methods, processes, and procedures that generate logs of sufficient detail to create historical audit trails of individual user account access activity for a minimum of ninety days and R6.4. The Responsible Entity shall retain all logs specified in Requirement R6 for ninety calendar days R6.5. The Responsible Entity shall review...