Website security is the one of the most dangerous places for a company. If you look at a layered security approach, we start out with the internal network. There we have host security, patch management, host IDS and other server based technologies. Next we have the network security layers, network intrusion detection, network monitoring and [...]
Posts Tagged ‘Website security’
Web Security Testing has come of age
Posted: 20th July 2009 by admin in Compliance, Corporate StupidityTags: breach data, hacking, hipaa security, web security, Website security
HIPAA Assessments are the next wave
Posted: 12th July 2009 by admin in Compliance, Government Security, HIPAA, Security AssesmentTags: data theft, hipaa security, Managed Vulnerability Scanning, Website security
In February, CVS was ordered to pay a fine of 2.5million dollars by the FTC. This fine was because their employees threw out personal information about patients. Who knew poor recycling programs could cost so much? HIPAA has been around for a number of years but not until recently did we see that it has [...]
Vanguard Security Conference – Supplier Security
Posted: 2nd June 2009 by admin in Security Assesment, Supplier SecurityTags: antivirus, Code review, hacker, Identity theft, Managed Vulnerability Scanning, Supplier Security, web security, Website security
I spoke yesterday at the Vanguard Security Conference (http://www.go2vanguard.com) Vanguard has been doing this conference for a number of years. The focus is on Mainframe security. Most security professionals these days have never worked on MF security. I am proud to say I have back in the mid-90′s. We perhaps I shouldnt be do happy, [...]
Ways to Maintain Website Security
Posted: 10th April 2009 by admin in Compliance, Could Computing, Web SecurityTags: Application security, Code review, firewall, firewall management, Intrusion detection system, Intrusion prevention system, Managed Vulnerability Scanning, Website security
With the advancement in technology comes the heavy responsibility of monitoring an organization’s sensitive and valuable information. The use of the Internet has become a necessity in organizations to exchange their data and various other business details with their business partners, vendors and clients. In many cases, during transmission of datahackers compromise a network or [...]