Dark Reading's Security Monitoring Tech Center is your portal to all the news, product information, technical data, and best practices related to the monitoring of IT security events and status. Written for executives and businesspeople as well as security and IT professionals, the Security Monitoring Tech Center is a single community dedicated to the tools and techniques used to analyze security activity and detect potential threats to the business.
Iranian Hackers Claim They Compromised NASA SSL Digital Certificate
'Cyber Warriors Team' says it stole information on thousands of NASA researchers via a man-in-the middle attack
Security Index Marks A Year Of Doing Business Dangerously
The Index of Cyber Security has measured top security officers' sentiment on cyberthreats for more than a year. So what does the index's steady rise mean?
Logs Still Tough To Decipher, SANS Survey Says
More organizations employ log management and SIEM tools, but are still struggling to sort the bad traffic from the good
More Stories:
MORE NEWS >>>
Enterprises Largely Fail To Catch Attackers Via Monitoring
While 92 percent of breaches were detected when a third party notified the victim of suspicious activity, large companies did better in detecting their own breaches. Still, only in one-out-of-six (16 percent) cases did a large enterprise detect a breach with an active internal system, such as intrusion detection or log analysis. Passive internal detection occurs when an employee or system with a non-security role notices anomalous activity.

Verizon Data Breach Investigations Report 2011
Cloud, appliance, software? If you were planning on developing a security monitoring platform, which architecture would you use?
REUTERS
Chinese Firm Helps Iran Spy On Citizens
A Chinese telecommunications equipment company has sold Iran's largest telecom firm a powerful surveillance system capable of monitoring landline, mobile and internet communications, interviews and contract documents show
NEXTGOV
Cybersecurity Index Aims To Penetrate The Fog Of Marketing Hype
It's impossible to fix something if you can't even gauge that it's broken. It's a classic problem that systems engineers and defense contractors face: they are staring into a fog of elusive threats made worse by marketers trying to make a sale on security hype
TECHWEEK EUROPE
ENISA Urges Security Monitoring For Cloud Contracts
The European Network and Information Security Agency (ENISA), the European Union?s cyber-security body, has focused its attention on the cloud with a new guide aimed at helping IT procurement teams monitor the security of cloud-based contracts
ZDNET NEWS
Eight Ways To Improve Your Corporate Network Security Posture
Companies need a complete forensics record of every last packet to determine if attackers merely got onto a system or got away with sensitive data
BANKINFOSECURITY
IG Questions Effectiveness Of IRS Monitoring
The U.S. Treasury Department's Inspector General for Tax Administration point out flaws in IT security at the IRS that puts its data at risk. A third of the agency's servers are not monitored by the IRS Computer Security Incident Response Center, which provides round-the-clock security for IRS networks
INFORMATION WEEK
State Department CIO: What's Changed Since WikiLeaks
The agency is deploying new security technology in the wake of WikiLeaks, including auditing and monitoring tools to detect anomalous activity on the agency's classified networks and systems
GUARDIAN UK
Government Plans Increased Email And Social Network Surveillance
Ministers are expected to introduce a new law in May allowing police and security services to extend their monitoring of the public's email and social media communications, according to the British Home Office
FEDERAL TIMES
Agencies Urged To Improve Continuous Monitoring Of IT Systems
Agencies have been slow to invest in tools that continuously monitor federal systems and networks for cyber intrusions, 43,889 of which agencies reported to the Department of Homeland Security last fiscal year
Fundamentals of User Activity Monitoring
Benchmarking normal activity and then monitoring for users who stray from that norm is an essential strategy for getting ahead of potential data and system breaches. But choosing the right tools is only part of the effort. Without sufficient training, efficient deployment and a good response plan, attackers could gain the upper hand.
Does SIEM Make Sense For Your Company?
A security information and event management system serves as a repository for all the security alerts and logging systems
from a firm's devices. But this can be overkill for a company that is understaffed or has overestimated its security information needs. In this report, we discuss 10 questions to ask yourself in determining whether SIEM makes sense for
you--and how to pick the right system if it does.
Monitoring Tools and Logs Make All The Difference
It's no longer a matter of "if" you get hacked, but when. In this special report, we take a look at ways to measure your security posture and the challenges that lie ahead with the emerging threat landscape.
Other reports from the Security Monitoring Tech Center:
| Sponsored by: |
Security Management 2.0: Time to Replace Your SIEM?
Is it time? Are you waving the white flag? Has your first gen SIEM failed to meet expectations despite your investment? If you are questioning whether your existing product or service can get the job done, you are not alone. Read this Securosis white paper to learn how easy it can be to replace your SIEM with a next generation solution.
IT Executive Guide to Security Intelligence: Transitioning from SIEM to Total Security Intelligence
Read this whitepaper to learn how adopting a next generation SIEM solution provides security intelligence, to allow organizations to maintain comprehensive and cost-effective information security. Discover how security intelligence enables critical concerns in five key areas: Data silo consolidation, threat detection, fraud discovery, risk assessment/risk management, and regulatory compliance.
The Return on Security of QRadar: Improving Operational Efficiencies in Federal Government
In this study, IANS interviewed two Q1 Labs customers using QRadar to assess their Return On Security (ROS). The two customers were providers of service to the U.S. Government and had highly secure environments dealing with extremely sensitive data. The data yielded from the interviews showed substantial benefit to the organizations for the cost, both in money and staff time.
SANS What Works Webcast: Worldwide Retailer Boosts Privacy with Security Intelligence
A leading retailer with stores worldwide was seeking a more innovative tool to protect customer privacy and intellectual property. PCI compliance mandated log collection, but a vast number of different tools generated an overwhelming amount of log data, making it difficult for the small security team to review it effectively. The solution the company chose had to fit into a diverse network, provide intelligent reporting and offer a centralized management console.
Learn How Security Intelligence Can Help Combat WikiLeaks Stuxnet and Advanced Threats
WikiLeaks and Stuxnet have illustrated a few fundamental IT security issues that have underscored the need for Total Security Intelligence to counter advanced threats and to detect anomalous behavior. See how government and commercial organizations are using QRadar as an integral component of their IT security program to identify emerging threats based on context and situational awareness.
MORE NEWSFEED >>>