Access Control Access Control includes authentication, authorization and audit. It also includes additional measures such as physical devices, including biometric scans and metal locks, hidden paths, digital signatures, encryption, social barriers, and monitoring by humans and automated systems. Authorization may be implemented using role based access control, access control lists or a policy language such as XACML.
|
Part 1 describes the threat landscape as seen by SMBs, and describes the security controls that belong in Stage 1.
| |
|
|
|
This white paper examines the compelling business and technical case for centralizing administration in Microsoft's Active Directory, describes how Centrify's integrated architecture enables you to extend Active Directory to your non-Microsoft platforms, and describes the Centrify Suite's unique benefits.
| |
|
|
|
This white paper examines the compelling business and technical case for centralizing administration in Microsoft's Active Directory, using Centrify's DirectControl to extend Active Directory authentication and access control to your UNIX, Linux and Mac OS systems and applications, and using Centrify's DirectAudit to log user activity to provide you a clear picture of end user actions on all UNIX and Linux systems.
| |
|
|
|
This white paper examines the challenges of migrating NIS deployments to a central repository, and explains in detail how a combination of Microsoft Active Directory and Centrify DirectControl can deliver a cost-effective solution that strengthens security while improving IT efficiency.
| |
|
|
|
The recent economic downturn has created some formidable challenges for the retail banking industry. Fraud and identify theft are on the rise, costing banks big money and raising customer concerns about security.
| |
|
|
|
In a mobile environment, data, not just employees, is also mobile. Loss of a laptop that contains trade secrets or confidential data can be costly - not just to business, but to consumers - and the cost of a single data breach can run into the millions.
| |
|
|
By: ESET
Published Date: Jan 21, 2010
Bots and botnets suck, so what better teaching aid to help people understand them than a vacuum cleaner? It can be extremely challenging to attempt to explain technical concepts to non-technical people. There are two goals for this presentation. Click on this white paper to read about it.
| |
|
|
By: McAfee
Published Date: Dec 09, 2009
Despite the six-year-old CAN-SPAM Act, spammers routinely abuse the law and continue to deliver their obnoxious email. One year ago, a major spam-hosting ISP was shut down, causing an impressive drop in botnet activity. Today, however, spam authors are more active and smarter than ever. Spammers love to tailor their messages to the news and the season. Read this report to gain a greater understanding of current spam threats.
| |
|
|
|
The increasing adoption of electronic health records greatly complicates the tasks of security and privacy requirements. In this webcast, *Trend Micro* and *Beth Israel Deaconess Medical Center* discuss how to successfully navigate through the challenges associated with securing Web-based applications.
| |
|
|
By: McAfee
Published Date: Nov 17, 2009
One of your biggest challenges is evaluating and selecting vendor products and services. That's why Forrester created the Forrester Wave, making it easy for you to make well-informed decisions. This complimentary Forrester Wave report on Web Filtering ($795 retail value) offers: An in-depth evaluation of Web filtering vendors, based on 53 criteria and a powerful Excel spreadsheet that allows you to easily compare products and get in-depth data and analysis about each one.
| |
|
|
|
This white paper outlines a sound process-based approach in protecting critical privileged accounts that are found in virtually every application, database and infrastructure device throughout enterprises. This paper will present BeyondTrust PowerKeeper as a solution to secure passwords for privileged accounts in heterogeneous IT environments. Through features such as automated password resets and management workflows, secure storage of credentials, and a sealed operating system, PowerKeeper is the only solution in the market that is fully heterogeneous out-of-the-box.
| |
|
|
|
Strengthening security, maintaining compliance, and achieving efficiencies and economies of scale are top-of-mind issues for enterprise IT executives. In this paper, IDC analysts examine the role of identity and access management (IAM) solutions in addressing these needs and specifically looks at the role privileged access lifecycle management (PALM) can play in helping heterogeneous organizations proactively refine their strategies regarding privileged access management controls, cross-platform monitoring, and automated workflow capabilities.
| |
|
|
|
In this whitepaper, Enterprise Management Associates (EMA) examines this critical issue in IT security administration in light of the BeyondTrust approach to helping businesses move from a trust-based system to a secure, auditable process in order to provide a higher standard of control and better support for regulatory compliance.
| |
|
|
|
It is critical that organizations are proactive in their approach to mitigating insider threats. Week-after week there are disturbing, déjà vu-like stories of significant data breaches, arrests connected to insider attacks, or investigation reports emphasizing the necessity to control privileged accounts that hold highly sensitive data. This white paper explores insider attacks, threats and risks involved across every enterprise. Lastly, we will recommend a sound, cost-saving solution to prevent a disaster from happening to a company's financial assets and reputation using access control.
| |
|
|
By: Iovation
Published Date: Sep 25, 2009
One of the world's largest MMORPG publishers uses iovation to keep their games safe for their valued players, and the fraudsters out.
| |
|
|
By: IBM
Published Date: Sep 10, 2009
Data protection and recovery can be a complicated problem in remote offices. But there are options. This white paper explores a range of possibilities, and shows how an adaptive data protection solution can protect remotely stored data for enterprises of all sizes.
| |
|
|
By: IBM
Published Date: Sep 10, 2009
As the demands for data capacity and higher service levels grow, protecting corporate data becomes more challenging. Continuous Data Protection, as discussed in this white paper by Evaluator Group and IBM, can cost-effectively improve security with As the demands for data capacity and higher service levels grow, protecting corporate data becomes more challenging. Continuous Data Protection, as discussed in this white paper by Evaluator Group and IBM, can cost-effectively improve security with minimal impact to operations.
| |
|
|
|
Whether you stick with the defaults or set up a dedicated display, McAfee equips you to control your security, your way. Weigh the hidden costs of day to day maintenance of point solutions, such as learning curve, system costs, configuration overhead, maintenance, risk monitoring, incident response, and reporting. Get tangible examples of how McAfee centralized management options make you more efficient while giving you greater visibility and control in just 15 minutes a day or less. Read more.
| |
|
|
|
If you're in IT, you understand all too well the challenge of competing priorities. Security is important-but so are all of your other jobs. That's why McAfee offers a practical approach to managing security and lays out an approach for managing security in just 15 minutes a day. Read more.
| |
|
|
|
If you were a hacker, would you rather attack Bank of America or Bob's Bike Shop? If you are a smaller organization, is your data less valuable? The reality: mid-size organizations face as many, if not more, threats. Why? You have less time and resources dedicated to protecting against every risk. Find out the cost savings and protection benefits that are achieved when you take a methodical approach to closing your security gaps. Read more.
| |
|
|
By: LogMeIn
Published Date: Aug 14, 2009
This paper explores the challenges of supporting a remote workforce with legacy tools and the hidden costs of these tools. It also highlights best practices that organizations can use to choose enterprise helpdesk tools that better meet the needs of remote employees, while also helping to cut costs. Get this white paper today and find out how legacy tools can fall short when it comes to supporting today’s mobile workforce. See how it easy it is to make the switch to best-in-class helpdesk solutions.
| |
|
|
|
Data-Protect critical information anywhere it goes. Implementing data protection products and processes can be daunting. Make the right decisions by exploring what is available and what makes sense for your organization. Use this simple guide to evaluate different vendor offerings.
| |
|
|
|
BIG-IP resource provisioning combines the best features of each virtualization model by enabling BIG-IP LTM modules to run sandboxed without sharing resources, while giving them the ability to dynamical scale if/when needed. Resource provisioning is a new model in hardware virtualization, one that will change the face of application delivery and Application Delivery Controllers moving forward.
| |
|
|
By: Tripwire
Published Date: Jun 30, 2009
Learn about the financial institution safeguards included in the Gramm-Leach-Bliley Act (GLBA) and how your organization can institute an orderly set of compliance steps using an automated configuration audit and control solution.
| |
|
|
By: Tripwire
Published Date: Jun 30, 2009
Since the adoption of SOX, much has been learned about IT compliance. Discover how to make SOX efforts more effective in "Sustaining Sox Compliance."
| |
|
|
|