| |
| Home >
Security > Security Policies |
|
|
|
|
A Security Policy is a plan of action for tackling security issues, or a set of regulations for maintaining a certain level of security. It can span anything from the practices for securing a single computer, to building/premises security, to securing the existence of an entire nation-state. |
|
| |
 |
Results 1 - 25 of 65 matches |
Sort Results By : Published Date | Title | Company name |
 |
|
|
| By : Sophos |
Published Date: May 23, 2008 |
|
|
Protecting IT networks used to be a straightforward case of encircling computers and servers with a firewall and ensuring that all traffic passed through just one gateway. However, the increase in mobile workers, numbers and type of device and the amount of non-employees requiring network access, has led to a dissolving of that network perimeter.
Download Now
|
 |
|
|
|
| By : CA |
Published Date: May 12, 2008 |
|
|
Organizations are facing an explosion in the number of users of all types - employees, customers, partners and contractors - all of which need access to applications, data and other resources. While trying to provide access to the resources each user needs as quickly as possible, the organization must also ensure users do not have access to things they do not need.
Download Now
|
 |
|
|
|
| By : Sophos |
Published Date: May 07, 2008 |
|
|
The unmonitored and unguarded use of email by employees poses a multitude of risks to organizations. The distribution of inappropriate or offensive content, malicious emails, and the risks of data leakage all threaten working environments, IT resources and an organization's reputation. A comprehensive, transparent and enforceable email acceptable use policy (AUP), combined with robust email security solutions, dramatically reduces exposure to these risks.
Download Now
|
 |
|
|
|
|
|
|
A survey of 185 IT professionals finds that, although computer and data security are high priorities, they are surprisingly unprepared to prevent data breaches and computer theft. 1 out of 4 organizations surveyed had a data breach in the past year. Preventative measures are found to be consistently undermined, with only 1 in 100 employees consistently following security policy. This white paper explores the survey findings.
Download Now
|
 |
|
|
|
| By : NetWrix |
Published Date: Apr 14, 2008 |
|
|
At the end of an academic year, many thousands of students may permanently leave a school or university system. Once these users graduate, discontinue their education, or perhaps simply move away, IT administrators are left with a huge number of accounts that must be marked as inactive and then dealt with according to system policies.
Download Now
|
 |
|
|
|
| By : Sophos |
Published Date: Apr 10, 2008 |
|
|
Employees increasingly expect to use the internet at work for their own personal use in return for longer hours, working from home and interrupting vacations. This has a number of security, productivity, bandwidth and legal ramifications that require organizations to create and implement a web usage policy that is backed up by effective web filtering tools.
Download Now
|
 |
|
|
|
|
|
|
While IPSec VPN implementation has traditionally been viewed as expensive and time-consuming for large organizations, Quocirca has found that the next generation of IPSec VPN technologies has addressed these management headaches through automation, integrated security policy management, and centralized control.
Download Now
|
 |
|
|
|
| By : Tripwire |
Published Date: Mar 31, 2008 |
|
|
Discover how to achieve and maintain FISMA compliance to ensure security of systems and data.
Download Now
|
 |
|
|
|
| By : Qualys |
Published Date: Mar 28, 2008 |
|
|
As a business owner, or someone responsible for network security within your organization, you need to understand how to prevent attacks and eliminate network weaknesses that leave your business exposed and at risk. Vulnerability Management for Dummies arms you with the facts and shows you how to implement a successful Vulnerability Management program.
Download Now
|
 |
|
|
|
| By : Tripwire |
Published Date: Mar 21, 2008 |
|
|
Learn more about the security risks and vulnerabilities faced by organizations, and the elements of a proactive security approach. Then find out how Tripwire helps organizations attain and maintain a good security posture using industry-leading configuration assessment and change auditing to harden systems against security breaches, automate compliance with security standards and policies, identify configuration changes, and resolve vulnerabilities.
Download Now
|
 |
|
|
|
|
|
|
While some firewall companies may claim their products are “PCI Compliant,” there’s no such thing. Compliance requires more than just plugging in a security appliance and calling it good: you need a network design with physical and logical boundaries that allow you to segregate and monitor your PCI-compliant operating environment.
Download Now
|
 |
|
|
|
| By : MX Logic |
Published Date: Jan 16, 2008 |
|
|
In this recent report, the Aberdeen Group’s research revealed that 100% of Best-in-Class companies consume some managed security services as part of their security strategy. The most widely deployed and easiest to implement managed security service is email security.
Download Now
|
 |
|
|
|
|
|
|
This paper describes a new approach to managing encrypted data that significantly strengthens an organization's security posture, while minimizing the cost and effort of PCI compliance. Read this white paper and find out more about how to comply with PCI compliance requirements.
Download Now
|
 |
|
|
|
|
|
|
Email compliance, security and content policy enforcement is a growing priority for all organizations. Email content control solutions provide real-time scanning of email traffic and provide the foundation for proactive enforcement of regulatory and corporate policies. However, the administrative burden associated with policy management imposed by most such products is significant.
Download Now
|
 |
|
|
|
|
|
|
This paper will discuss the need for addressing security concerns in outsourced applications, outline a framework for addressing those concerns, explore the role of source code review to assess and certify outsourced applications, and provide a sample contract addendum for including secure code requirements in RFP's and outsourcing contracts.
Download Now
|
 |
|
|
|
|
|
|
The ability to monitor, track and report usage based on actual user identity and applications provides for quicker reaction time, easier reporting for compliance, as well as more visibility into the network. Learn about a complete line of solutions for effective identity-based policy enforcement.
Download Now
|
 |
|
|
|
| By : Qualys |
Published Date: Aug 28, 2007 |
|
|
Despite defensive efforts with firewalls, intrusion detection, antivirus and the like, criminals, careless employees and contractors have exposed more than 158 million digital records of consumers' personally identifiable information since 2005. This security guide describes the requirements and on demand software-as-a-service (SaaS) solution called QualysGuard for effective vulnerability management and policy compliance.
Download Now
|
 |
|
|
|
|
|
|
Get sound advice from the network security experts at WatchGuard on how to easily build and maintain a network security policy.
Download Now
|
 |
|
|
|
| By : Qualys |
Published Date: Aug 09, 2007 |
|
|
Consistent, ongoing execution of vulnerability management and policy compliance is difficult, if not impossible to do on a manual basis. There are simply too many "moving parts" to juggle and act on in a timely and cost-effective manner. This guide provides a step-by-step guide for automating the vulnerability and compliance workflow process.
Download Now
|
 |
|
|
|
| By : GFI |
Published Date: Jul 05, 2007 |
|
|
This white paper highlights why organizations need to implement event log auditing as an integral part of their security policy to meet industry standards such as the Payment Card Industry Data Security Standard (PCI DSS).
Download Now
|
 |
|
|
|
|
|
|
Organizations should implement source code analysis tools as part of the software development life cycle to find and fix the highest number of security issues early in the project. This will result in a higher-quality product and lower overall application life cycle costs. Countless studies and analyst recommendations suggest the value of improving software security during the development life cycle (SDLC) rather than trying to address security vulnerabilities in software discovered after widespread adoption and deployment.
Download Now
|
 |
|
|
|
|
|
|
The path to application security begins by rigorously testing source code for any and all vulnerabilities, to ensure the application will not compromise, or allow others to compromise, data privacy and integrity. This paper outlines the steps to secure source code development practices, and presents a source code security review checklist.
Download Now
|
 |
|
|
|
|
|
|
Click here and get a head start on these Hackers by learning how they are turning their attention to new ways to deliver viruses, crash unsuspecting users’ computers, and steal social security numbers, passwords, bank account numbers, etc.
Download Now
|
 |
|
|
|
| By : GFI |
Published Date: Jun 04, 2007 |
|
|
This white paper examines the requirements to adhere to the Payment Card Industry Data Security Standard (PCI DSS), the implications of non-compliance and how effective event log management and network vulnerability management can help achieve compliance.
Download Now
|
 |
|
|
|
| By : CA |
Published Date: May 07, 2007 |
|
|
UNIX and Linux systems have inherent security issues that pose high risk to the business objectives of complying with regulations and data protection. To reduce security risks, you need full superuser containment and the ability to enforce strict access control to critical system resources through centralized and automated policy management across different platforms.
Download Now
|
 |
|
 |
 |
|
Sort Results By : Published Date | Title | Company name |
|
|
<< Start < Previous 1 2 3 Next > End >>
|
| |
More Security Topics |
|
Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security |
|
 |
|