Search IANS' Research Database

Most Recent IANS Research

May 23, 2013 | Governance, Risk & Compliance
The Risk and Compliance track of the 2013 Minneapolis and New York Forums focused on the areas in which information security and legal requirements intersect. Delegates flocked to Faculty Randy Sabett’s Risk and Compliance track to learn how to be more secure, more compliant, and resultantly drive down organizational risk and drive up the bottom line. This paper synthesizes the key highlights from the roundtables as reported by Faculty Adam Ely and David Etue. Read More
May 22, 2013 | Identity & Access Management
Identity and Access Management projects can be overwhelming, and as a result, many companies have avoided undertaking the monumental project of overhauling their IAM strategy. Building a smart IAM architecture requires a high-level strategic view as well as a tactical implementation plan, and in this paper, Gunnar Peterson outlines how enterprises can start to take their first steps towards improved IAM. Read More
May 22, 2013 | Application Security
Security matters at every stage of the application life-cycle, so you need to be as vigilant during the production phase as your are during development. Join IANS application security faculty member Ed Moyle and Cenzic CTO Scott Parcel as they team up to explain the often misunderstood discipline of production application security. Read More
May 22, 2013 | Identity & Access Management
Identity and Access Management (IAM) implementation can be complex, expensive, and difficult. With more organizations integrating third-party applications with internal infrastructure, and deploying cloud-based systems and applications both internally and in provider environments, the problem gets even worse. This Technology Spotlight Webinar highlighted three select vendors: Okta, Ping Identity, and Symplified who are leading the charge in cloud-based identity and access management. Read More
May 22, 2013 | Identity & Access Management
Identity and Access Management (IAM) implementation can be complex, expensive, and difficult. With more organizations integrating third-party applications with internal infrastructure, and deploying cloud-based systems and applications both internally and in provider environments, the problem gets even worse. This Technology Spotlight Webinar highlighted three select vendors: Okta, Ping Identity, and Symplified who are leading the charge in cloud-based identity and access management. Read More
May 21, 2013 | Enterprise Risk Management
This IANS Answers document details the recommendations from an Ask an Expert call on the question: What is the best way to craft mobile end user agreements to ensure customers are properly informed of security risks and companies are adequately protected from liability? Read More
May 20, 2013 | IT Audit
Cloud storage has complicated the process of e-Discovery for IT teams. Not only does cloud often mean that enterprises are not entirely in control of their own data, but gaining access to it can be difficult technologically and politically. The courts, however, may not differentiate between cloud-stored data and internally-stored data. In this report, Ed Moyle outlines how security teams can start re-vamping their internal processes to prepare for an e-Discovery request. Read More
May 20, 2013 | Mobile Security
For many enterprise organizations, privacy policies pertaining to personally-liable devices under BYOD programs are of paramount importance. That said, whose privacy are we looking to protect? In this document, Aaron Turner drills into the issues of privacy on personally-liable devices from a user perspective and from the enterprise angle. Read More
May 17, 2013 | Endpoint Security
This IANS Answers document details the recommendations from an Ask an Expert call on the question: What are some best practices for endpoint management? Read More
May 17, 2013 | Mobile Security
During his End User Decision Support Webinar in May, Aaron Turner outlined some of the truths, clarified some of the myths, and offered alternative suggestions on how enterprise security teams can get a better handle on mobile device encryption. Read More