Five Tactical Security Metrics To Watch
Wondering how secure the corporate network is? Here's five operational security metrics that can help. First of a two part series
FBI Seeks 'Automated Search And Scrape' Of Social Networks
Agency issues RFI for technology to quickly find and surface 'events' via search of social networks, news sites
Do You Need A Security Operations Center?
When a company starts to worry about losing data to attack, it could be time to create a simple SOC. The most important steps to evaluating the need for an effective operations center.
IP D-Day: Major Providers, Vendors To Go IPv6 June 6
IPv6 implementations 'scrutinized' for security issues so no panic necessary, experts say amid concerns of as-yet undiscovered bugs
'Anonymous' Back With A Vengeance: Downs DoJ, MPAA, RIAA, Universal Music Websites
White House also being targeted as federal anti-piracy moves fuel widespread online attacks
Five Principles To Improve Your Security Monitoring
Companies should expect to be compromised. So how should firms better monitor their security to detect attackers?
Financial Companies Sharing Information About Security
Concerns about cyberthreats drive competing institutions to pool information, report says
Sandia Labs Offers Online DNSSEC Tool
New free visualization tool helps government agencies, businesses in their DNSSEC implementations
Study: Most Federal Agencies Uncertain About Meeting FISMA Security Monitoring Deadlines
Only 22 percent of federal IT people say their agencies have deployed continuous monitoring technology; ability to meet FISMA deadlines in doubt
Survey: Half Of Firewall Rules Improperly Configured
Firewall administration, auditing still mostly a manual process, leading to errors and breach risks
Security Still An Afterthought, Study Says
Despite widespread threats and breaches, most enterprises still ignore security issues when building new apps, Ernst & Young survey says
Tech Insight: The Smart Way To Gather Security Intelligence
Proper logging and correlation, reporting, alerting are key to catching badness
Many Security Pros In The Dark About Their Own Environments, Study Says
Do you know how many Internet-facing servers you have? Many IT pros don't know the answer -- nor the answers to many other basic security questions, according to a new RedSeal survey
APT Shaping SIEM
Traditional security information and event management tools can't catch an advanced persistent threat attacker
SIEM Users Seek To Drill Deeper Into Security Data, Study Says
Security monitoring, data warehousing, and business intelligence are on integration path, according to Forrester Research report
High-Profile Hacks Prompt High-Powered Hires
From rock-star CSOs to hot-shot junior incident response specialists
IT Pros Lose Sleep Over Spyware, Not APT
eEye survey finds most IT admins, managers and C-level executives consider Stuxnet, Operation Aurora, and other high-profile targeted threats 'minor' concerns
Enterprises Seek Best Practices For Storing -- And Finding -- Security Event Logs
Security event logs can be the solution to a security threat or audit. But how should you store them? Here are some answers
SIEM Meets Business Intelligence
Getting the most out of security data makes shift to BI a natural one for some organizations, security experts say
The Inconvenient Truth About Breaches
Assume you've been attacked and line up the tools and information to predict, detect, and respond to it, new Dark Reading Analytics Alert says
Organizational Rivalries, Bureaucracy Big Impediment To Monitoring
Sometimes politics can deter even the best security deployments
Majority Of Websites Fail To Deploy Online Trust Measures
Social media, ecommerce, financial services ahead of federal agencies in protecting consumers online, Online Trust Alliance report says
Can Companies Share Security Data? New Report Says Yes
Emerging standards, industry initiatives could enable enterprises to share security data
Log Management Spurs Data Collection Debate
First you have to know what to collect before you can analyze all of the data you gather
Enterprises Logging Security Data, But Still Struggle To Use It
Seventh annual SANS log management survey shows IT security log data still tough to find and correlate
Continuous Monitoring Still A Long Way Off For The Feds
Deadline for FISMA compliance reporting via automated tool has past, and few agencies are using it
Verizon Data Breach Report: Bad Guys Target Low-Hanging Fruit
New Verizon Business report says ybercriminals steering away from big caches of data, using simpler tactics to crack smaller enterprises
Tech Insight: Updating Your Security Toolbox
As threats change, so do the tools for diagnosing and analyzing new threats. Here's a look at some open source applications that every security department should have
IT Security Salaries Stay Flat Despite Wave Of Attacks
InformationWeek salary survey shows median base salary for IT security pros during the past 12 months mostly stayed the same or dipped slightly-- but they still make more than their IT counterparts
WordPress Reports Multiserver Breach
"We presume our source code was exposed and copied," says popular Web hosting organization WordPress
Utilities Still Struggling With IT Security Issues, Study Says
Three-quarters of energy firms have experienced a IT security breach in the last year; 69 percent expect more to come, Ponemon and Q1 Labs study says
RSA Breach A Lesson In Detection And Mitigation
Today's monitoring and SIEM tools must evolve with better blocking capabilities, security analyst says
EMC Acquires New Monitoring Capabilities Through Purchase Of NetWitness
EMC buys NetWitness; RSA security unit will integrate NetWitness tools into its monitoring offerings
Searching For Security's Yardstick
Most security organizations still don’t have clear metrics for measuring their performance – or their enterprises’ security posture
'Silos' Of Security Processes Still Not Integrated, Study Says
Key IT security processes such as log management, compliance reporting, real-time monitoring, forensic investigation, and incident response still not coordinated, according to SenSage study
SecurID Breach Warning Signs In The Audit Logs
SANS Internet Storm Center on what to look out for in your ACE server logs to prepare for the worst in the aftermath of the RSA SecurID breach
SIEM Market To Double By 2015, Report Says
As threats become more serious, demand for security information and event management (SIEM) will grow, Frost & Sullivan says
Secure Development Means Building In Monitoring
But baking in monitoring and audit capabilities takes a back seat to application development priorities
Getting The Most Out Of Your SIEM System
SIEM tools promise much, but are often disappointing. Here are some tips for making them work
Under Growing Pressure, Security Pros May Be Ready To Crack, Study Says
Faced with securing personal devices and a growing base of threats, security pros feel overwhelmed, (ISC)2 survey reports
Practitioners Detail Evolution Of SIEM Deployments
Most companies progress through three stages, though many get stuck at the very beginning, they said
McAfee, Wind River Team To Build Security Protection For Embedded, Mobile Devices
New line of products will build ePolicy Orchestrator (ePO) security management agent, whitelisting, network access control, DLP, and host intrusion prevention into embedded device software
New Group Seeks Dialogue On Security Data Sharing, Mining
Open Security Intelligence community champions methods for harvesting, mining security information
Mozilla Working On Making Its Applications 'Attack-Aware'
Application would sniff out malicious user activity
SenSage Opens Security Data To Off-The-Shelf Business Intelligence Tools
New SenSage technology will let enterprises use off-the-shelf business intelligence tools to help navigate and analyze logs and events
More Than Half Of Mobile Providers Hit By Attacks That Resulted In Outages
Arbor Networks annual infrastructure report for 2010 shows mobile networks in the crosshairs, DDoS attacks against ISPs intensify
Report: Noncompliance Much More Costly Than Compliance
Ponemon Institute study finds average cost of not complying with security regulations and standards is more than two-and-a-half times as high as what it costs to comply
An Advanced Persistent Threat Reality Check
Prevention is often futile, so how you manage the aftermath of discovering the intrusion can make all the difference in remediation
Product Watch: NetWitness To Add Real-Time Malware Analysis
Tool assesses, scores, and prioritize risks from malware
Stuxnet And Playing Offense Instead Of Defense
Security experts call for emphasis on resilience, offense
Does SIEM Make Sense For Your Company?
A security information and event management system serves as a repository for all the security alerts and logging systems
from a firm's devices. But this can be overkill for a company that is understaffed or has overestimated its security information needs. In this report, we discuss 10 questions to ask yourself in determining whether SIEM makes sense for
you--and how to pick the right system if it does.
Monitoring Tools and Logs Make All The Difference
It's no longer a matter of "if" you get hacked, but when. In this special report, we take a look at ways to measure your security posture and the challenges that lie ahead with the emerging threat landscape.
Collaborative Security: Safe Ways to Share Event Info
Companies, even individual departments, are fighting the onslaught of cyberattacks, not as an army, but in isolated pockets of resistance. Coordinated efforts to share security information, both internally and among enterprises, are hamstrung by a lack of standard data formats, institutional entrenchment and legal concerns. In this report, we explain the obstacles and show you how to overcome them.
Other reports from the Security Monitoring Tech Center:
| Sponsored by: |
Security Management 2.0: Time to Replace Your SIEM?
Is it time? Are you waving the white flag? Has your first gen SIEM failed to meet expectations despite your investment? If you are questioning whether your existing product or service can get the job done, you are not alone. Read this Securosis white paper to learn how easy it can be to replace your SIEM with a next generation solution.
IT Executive Guide to Security Intelligence: Transitioning from SIEM to Total Security Intelligence
Read this whitepaper to learn how adopting a next generation SIEM solution provides security intelligence, to allow organizations to maintain comprehensive and cost-effective information security. Discover how security intelligence enables critical concerns in five key areas: Data silo consolidation, threat detection, fraud discovery, risk assessment/risk management, and regulatory compliance.
The Return on Security of QRadar: Improving Operational Efficiencies in Federal Government
In this study, IANS interviewed two Q1 Labs customers using QRadar to assess their Return On Security (ROS). The two customers were providers of service to the U.S. Government and had highly secure environments dealing with extremely sensitive data. The data yielded from the interviews showed substantial benefit to the organizations for the cost, both in money and staff time.
SANS What Works Webcast: Worldwide Retailer Boosts Privacy with Security Intelligence
A leading retailer with stores worldwide was seeking a more innovative tool to protect customer privacy and intellectual property. PCI compliance mandated log collection, but a vast number of different tools generated an overwhelming amount of log data, making it difficult for the small security team to review it effectively. The solution the company chose had to fit into a diverse network, provide intelligent reporting and offer a centralized management console.
Learn How Security Intelligence Can Help Combat WikiLeaks Stuxnet and Advanced Threats
WikiLeaks and Stuxnet have illustrated a few fundamental IT security issues that have underscored the need for Total Security Intelligence to counter advanced threats and to detect anomalous behavior. See how government and commercial organizations are using QRadar as an integral component of their IT security program to identify emerging threats based on context and situational awareness.
MORE NEWSFEED >>>