09/06/2011 |
Security Management
During a recent IANS peer call, one client outlined his strategy for building an effective red team. This report details the skill set for which he is looking and the characteristics, agreed upon by all call participants, crucial for red team success.
06/30/2011 |
Vulnerability & Threat Management
At the IANS Lone Star Forum 2001 in Dallas, TX, among conversations between IANS Faculty and end user clients, a turning point was witnessed. In many of the conversations regarding cloud service provision of solutions, platforms and infrastructure, the end users noted that they'd attained a level of comfort with the technology behind cloud providers' offerings. The main area of
06/21/2011 |
Security Strategy
These examples are based on conversations with IANS clients getting started with building a matrix of controls and services to present to senior management. They’re interested in proving the business value of their security activities in a scalable and simple way. IANS Faculty Member Diana Kelley offers tips on building and using a matrix and improving communication between
03/31/2011 |
Information Protection
IANS regularly receives queries from end user clients looking to understand how to better protect important information assets inside of the business ranging from sensitive personal data to critical IP and strategic information. In most organizations, a focus on new avenues of sharing by employees such as social media and web 2.0 applications have these organizations frantically
03/31/2011 |
Web Content Security
IANS regularly receives queries from end user clients looking to understand how to better protect important information assets inside of the business ranging from sensitive personal data to critical IP and strategic information. In most organizations, a focus on new avenues of sharing by employees such as social media and web 2.0 applications have these organizations frantically
03/20/2011 |
Vulnerability & Threat Management
The payment card industry has developed fairly extensive guidelines and requirements around computer forensic investigations. Specifically, these guidelines stipulate what to do in the case of a compromise, who is qualified to conduct the investigations, how these investigations are to be conducted and what is expected as a result of the investigation. More specifically, PCI
