Content Tagged ‘Compliance’

Did Your Company’s PCI Compliance Survive the Holidays?

January 14, 2011 - It seems that for many businesses, the first thing that suffers during the holiday crunch is anything that doesn’t bring in additional revenue – among them, maintaining PCI compliance. Look Back to Look Forward As you look back on the holidays, here (continue reading...) Read more

The WikiLeaks Fallout: More Than You Might Think

December 10, 2010 - It was amusing to read the quirks and eccentricities of world leaders in the WikiLeaks revelations published this week. Besides learning that Muammar Qaddafi can’t go anywhere without his “voluptuous blonde” nurse, the revelations have been a grave embarrassment for (continue reading...) Read more

1619.3 Has Fallen, but it’s Not Bad News

December 7, 2010 - On Wednesday the 1st of December, the IEEE 1619 Group voted to disband the 1619.3 Key Management Standard effort. This may be disappointing for the few committed individuals that put a lot of work into this standard, but the effort was (continue reading...) Read more

Must We Return to the Dark Ages of Information Castles?

December 2, 2010 - Like the rest of you, I was stopped by the revelation that wikileaks is potentially turning its eyes to the private sector. I’m usually one for openness, but as an information security professional I am shocked at the potential (continue reading...) Read more

Application Security; Don’t get caught off guard with dangerous assumptions

November 9, 2010 - Don’t get caught off guard. We hear that statement all the time with regards to information security. Sadly, as many businesses have experienced, such talk is cheap. Obviously no one wants (continue reading...) Read more

Get off My Grid!

October 21, 2010 - According to an article in Greentech Media, by the end of 2015, the deployment of smart grid technologies will potentially introduce 440 million hackable points to the energy grid. Some of you may be asking, “What is the smart grid?” (continue reading...) Read more

Virtualization and PCI DSS 1.2.1

October 11, 2010 - PCI Data Security Standard (PCI DSS) 1.2.1, which is a set of standards for retail and other verticals that defines the requirements for security compliance, is relatively simple and straightforward. 12 requirements define the spirit and intent of the (continue reading...) Read more

No Small Token: Why Tokenization’s Taken Off—and Why You Should Care

October 4, 2010 - If tokenization isn’t already a part of your organization’s near-term plans, it may be the right time to put it there. In just a few years, tokenization has gone from a little understood or employed practice, to one that’s gained virtually (continue reading...) Read more

Everybody Likes a New Pair of Shoes

September 29, 2010 - Despite the small panic that The Register tried to create around the activation of DNSSEC, the Internet was not killed on May 5 nor did anything happened to any Internet end-station on July 15th when the Internet Root Zone (continue reading...) Read more

Who has liability in the cloud? Well, you do.

September 27, 2010 - I was speaking on a panel in Silicon Valley yesterday and the question was asked about who’s liable for data breaches in the cloud. I stated emphatically that you, the customer who placed the data there, was liable. To which (continue reading...) Read more

A Maturity Model for Enterprise Security

August 5, 2010 - When we sit down with our enterprise customers the discussion usually hinges on two questions: where is your enterprise security program today, and where do you want it to be tomorrow? For many companies, the answer is pretty straightforward – they (continue reading...) Read more

Securing the Next Generation Data Center

November 2, 2009 - Last week, we announced our next generation security platform designed for data center and core network deployments. The new TippingPoint N-Platform represents our efforts to provide the most comprehensive security for our customers using intrusion prevention (continue reading...) Read more

Copyright © 2012 The Security Blog. All rights reserved.