Revised NIST Guide Helps Organizations Handle Security-Related Incidents


The Information Technology Laboratory (ITL) at the National Institute of Standards and Technology (NIST) recently revised its guidelines for computer security incident handling to address the new and changing threats and attacks that are occurring.

Continue reading Revised NIST Guide Helps Organizations Handle Security-Related Incidents

Tags: , , , , , , , , , ,

One in three companies experienced at least one DDoS attack in the last twelve months


One in three organizations (31 percent) has suffered one or more Distributed Denial of Service (DDoS) attacks in the last 12 months, according to independent research commissioned by Corero Network Security.

Continue reading One in three companies experienced at least one DDoS attack in the last twelve months

Tags: , ,

Sample InfoSec Policy – Computer And Communications Facility Location


This is a sample policy from Information Security Policies Made Easy, by Charles Cresson Wood.

Continue reading Sample InfoSec Policy – Computer And Communications Facility Location

Tags: , , , ,

Russian spy ring needed some serious IT help


The Russian ring charged this week with spying on the United States faced some of the common security problems that plague many companies — misconfigured wireless networks, users writing passwords on slips of paper and laptop help desk issues that take months to resolve. Continue reading Russian spy ring needed some serious IT help

Tags: , , , , ,

USB coffee-cup warmer could be stealing your data


Are you sure that the keyboard or mouse you are using today is the one that was attached to your computer yesterday? It might have been swapped for a compromised device that could transmit data to a snooper. Continue reading USB coffee-cup warmer could be stealing your data

Tags: , , , , ,

Survey: Business continuity, not data breaches, a top concern for tech firms


A new “risk factors” list from consultancy BDO finds security worries about data leakage are not top of mind – at least as expressed in their SEC filings.

Continue reading Survey: Business continuity, not data breaches, a top concern for tech firms

Tags: , , , , ,

Study: Cost of data breach in U.S. is highest world wide


A global study of data breach costs conducted by the Ponemon Institute finds notification laws have dramatic impact on the price tag.

Continue reading Study: Cost of data breach in U.S. is highest world wide

Tags: , ,

Featured InfoSecurity Policy – Telecommuter Working Environments


Reducing risk associated with a new technology often requires a combination of overlapping management and technical policies. For example, simply publishing a policy that restricts peer-to-peer networking software may not be sufficient to protect against data leakage if the organization has not defined any controls around computing environments for remote workers. Since many data leaks occur through home-based networks, protection involves a blend of policies including desktop configuration control, acceptable use and physical and environmental controls. As an example, consider this sample policy for Internet Telecommuter Working Environments.

Continue reading Featured InfoSecurity Policy – Telecommuter Working Environments

Tags: , , , , , ,

Cyber ShockWave Shows U.S. Unprepared For Cyber Threats


The Bipartisan Policy Center (BPC) hosted Cyber ShockWave, a simulated cyber attack on the United States, February 16, 2010 in Washington D.C. providing an unprecedented look at how the government would develop a real-time response to a large-scale cyber crisis affecting much of the nation.

Continue reading Cyber ShockWave Shows U.S. Unprepared For Cyber Threats

Tags: , , ,

Survey: The Business Risk of a Lost Laptop


When an employee loses a computer, the information on it is typically more valuable than the hardware, according to this survey of 3,100 IT security professionals. Learn how employees can unwittingly compromise customer information, financial records and intellectual property, and read the seven steps you can take today to reduce the business risk of lost laptops.

Continue reading Survey: The Business Risk of a Lost Laptop

Tags: , ,

The Top Cyber Security Risks


Two risks dwarf all others, but organizations fail to mitigate them. Continue reading The Top Cyber Security Risks

Tags: , ,