Email Alerts
-
Cloud security best practices foster rapid deployments
CIOs are developing their own cloud security best practices, such as auditing, risk assessment and contractual obligations, while the cloud industry plays catch-up. Article
-
Information security budget closest thing to recessionproof in 2010
Information security budgets in enterprise IT organizations will remain robust in 2010 compared with other IT spending areas. Learn more about budgeting for IT security. Article
-
Leveraging log management for IT and business process efficiency
Having invested in log management for security and compliance, some companies are using their security information and event management tools to drive business process efficiency. Article
-
New evaluation criteria for Web application security scanners
Impartial information about Web application security testing products has been hard to come by -- but new scanner evaluation criteria from the Web Application Security Consortium may change things. Tip
-
Information security program revamp adds outsourcer oversight and more
Read how one CIO used risk assessment, a dashboard, outsourcer oversight and one-on-one talks to build a robust security program. Tip
-
10 must-have steps for an effective SMB information security program
No information security program would be complete without these security tips from the NIST, which has compiled advice just as security threats to smaller businesses are on the rise. Tip
-
Talking swine flu and Conficker with the CIO of the CDC
The CIO at the Centers for Disease Control and Prevention (CDC) discusses how preparations for H1N1 and other human viruses compare with the computer variety and more. Article
-
Security and compliance can go together, when done in the right order
You can have security and still not be in compliance -- but you can't have true compliance without real security. How to avoid getting caught in the security and compliance trap. Tip
-
Steps toward making information security as important as data security
Unlike data security, information security must recognize the substance of information along with its association with those authorized to receive it. Tip
-
PCI DSS FAQ: The Payment Card Industry Data Security Standard and IT
This resource provides answers and resources to frequently asked questions regarding the Payment Card Industry Data Security Standard (PCI DSS). FAQ