Security management and security policies News free RSS news feed from the security policy Portal

Hell Pizza security breach exposes the inherent frailty of passwords

Following the announcement that pizza chain Hell Pizza may have been breached, revealing customer details and passwords, Stephen Howes, CEO of GrIDsure commented: “The potential security breach of Hell Pizza yet again exposes the inherent frailty of passwords as a method of authentication and illustrates the risk of using the same password for n [...more...]

1 in 10 IT professionals admit to cheating to get an IT audit passed

According to a survey conducted by Tufin Technologies of 242 IT professionals mainly from organisations employing 1000 to 5000+ employees, 1 in 10 admitted that either they or a colleague have cheated to get an IT audit passed. While our MPs are promising more transparency and honesty in politics perhaps the IT industry should follow suit. Howe [...more...]

Public sector organisations fail to keep records on secure data transfer procedures and costs

According to research by Software AG, over 50 per cent of public sector organisations are failing to keep records on inter-organisational secure data transfer procedures and costs. The information was obtained via a series of Freedom of Information (FOI) requests, which quizzed organisations on their usage of postal and courier services for suc [...more...]

One in five companies are still using couriers to send sensitive files

According to a survey released by Cyber-Ark, 19% of companies are still using couriers to send large or sensitive files, the insecure transfer method utilised originally by HMRC which left a disc containing child benefit information missing in London. 24 months since the publication of the Poynter Report which was commissioned after the HMRC breach [...more...]

Checklist for achieving optimal IT security

Like Darwin’s theory, the security industry has evolved totally on the nature of its surroundings. Since, global organisations have spent millions protecting themselves against the fear, uncertainty and doubt (FUD) that comes with threat to IT and Information. By playing to the negative core of this new threat to existence, the security indust [...more...]

Cybercrime industry has automated itself to improve efficiency, scalability, and profitability

The world of hacking has evolved into two major varieties: industrialized attacks and advanced persistent threats (APT). There has been a lot of discussion around the validity of APT recently - some have even connected APT with panties. But APT is a real threat. So, what’s the difference between APT and industrialized hacking, and how should you r [...more...]

SMBs open to significant legal issues over data ownership

Many SMBs are now truly embracing social networking applications by adopted them within their overall marketing strategies. But it is almost impossible to track who owns this data as social data content is aggregated from site to site. A survey by SpamTitan Technologies has highlighted the failure by small- and medium-sized businesses (SMBs) to [...more...]

How do you protect your data when it's out of your hands

What’s not to like about laptops? They’re powerful, connected, portable, have great graphics and sound – and they don’t cost much more than their desktop counterparts. So it’s no surprise that laptop shipments rose by 16% in 2009. Unfortunately, their portability makes them easier to lose, not to mention prime targets for opportunistic theft [...more...]

How to pass your Payment Card Industry Audit

For organisations that store, transmit or process credit card information, it is vital as they must be able to demonstrate compliance with the Payment Card Industry Data Security Standards (PCI DSS). The PCI DSS standard attempts to protect consumers while safeguarding the reputation of the industry itself and, while not a government mandate, this [...more...]

It is critical organisations like the Electoral Commission implement a central workable and secure solution

Back in March 2010 we submitted six key questions under the Freedom of Information Act to the UK Electoral Commission. We wanted to find out how they are protecting eligible voter information and monitoring access to the Registers. We have now finally (weeks after the 20 working days deadline) received a reply. Initially we asked whether they h [...more...]

...[view more security policy articles]...


Security websites for specific products:

Security websites for specific markets:

IT Security links


directory of IT, computer and network security suppliers
Search directory Register your company
IT, computer and network security books:

SEARCH NEWS
DIRECTORY
Google