-
Your 6 point SIEM solution evaluation checklist
With SIEM solutions gaining steam in India, Satish Jagu of Genpact shares concise tips based on the lessons from his SIEM implementation experiences.
-
5 mantras for DLP implementation success
Even as data loss prevention tools gain momentum, successful implementations call for a few prerequisites. Manish Dave, group CISO, Essar shares tips.
-
HDFC Bank’s enterprise security framework up close
Indian BFSI major HDFC Bank’s enterprise security framework is based on its ‘4 pillars of information security’. Join us as we gain insights from HDFC Bank.
-
How to recognize and prevent a hypervisor attack
A hypervisor attack can hand hackers the keys to your virtual kingdom. But, with the proper precautions and tools, you can minimize the risk.
-
SIEM system security: Protect the security nerve center
The prospect of a SIEM system crash should scare any enterprise. Guard against a compromised SIEM system to protect the security nerve center.
-
UTM sizing tips for your network security needs
UTM appliances greatly ease the management of network security. But correct UTM sizing is of prime importance. Follow these UTM sizing tips to get it right.
-
How to find a VPN firewall solution for your enterprise
Choosing a VPN firewall solution is no easy task as the market is saturated with options. Use these tips to learn how to find a VPN firewall solution for your enterprise.
-
Time to evolve beyond information systems audits
We have some way to go before information systems audits evolve to borderless information audits, covering the entire lifecycle of all types of information.
-
10 popular Linux-based tools for security
Linux-based tools for security are a boon to system admins for monitoring network security. Here are 10 popular and useful Linux-based security tools.
-
Business case for risk-driven PCI compliance
PCI compliance that exceeds the minimum requirement helps establish a robust, optimized security posture, which can be achieved via a risk-driven approach.
-
Sslstrip tutorial for penetration testers
Sslstrip is a powerful tool to extract sensitive credentials using HTTPS stripping. This sslstrip tutorial explains the working of sslstrip in-depth.
-
Explore a CSRF attack’s anatomy
A CSRF attack is a serious Web security threat that, combined with XSS, can be lethal. Learn about the CSRF attack’s anatomy, along with mitigation methods.
-
Using IRM solutions for data extraction access control
IRM solutions can be integrated with transactional systems to ensure protection of extracted data by setting predefined access policies in the IRM solution.
-
How to learn from your compliance mistakes
In this bonus to our "Compliance scorecard" Security School lesson, Eric Holmquist covers the importance of learning from failure by assessing how and why mistakes happen.
-
BackTrack 5 guide 4: How to perform stealth actions
With BackTrack 5, how to include stealth into attacks is a necessary skill for penetration testers. Our BackTrack 5 how to tutorial shows you the way
-
Cyber security threats: Will you be the next victim?
The old cyber security model is crumbling in the face of new, advanced cyber security threats. A paradigm shift in the approach to cyber security is crucial.
-
Web application security guidelines for developers
The best way to mitigate Web app flaws is to prevent them in the first place. Learn how with these Web application security guidelines for developers.
-
5 security metrics tips for optimum effectiveness
Developing effective security metrics is a challenge. But significant savings in time and effort are possible with the right approach to security metrics.
-
BackTrack 5 tutorial 3: More on exploitation frameworks
Installment three of our BackTrack 5 tutorial covers credential theft and privilege escalation. Also learn SQL injection from this BackTrack 5 tutorial.
-
App security; best practices for the cable industry
Application security and data privacy is a grave concern in the cable sector. Here’s a look at major application security threats and mitigation measures.
-
5 ways to easen management sanction for infosec budgets
Getting management to approve security budgets is difficult. Here are guidelines to help you prepare and present information security budgets effectively.
-
Maltego tutorial - Part 1: Information gathering
Maltego is a powerful OSINT information gathering tool. Our Maltego tutorial teaches you how to use Maltego for personal reconnaissance of a target.
-
POS terminal security: Best practices
Securing point of sale (POS) environments can be tricky. Shobitha Hariharan and Nitin Bhatnagar share comprehensive POS terminal security best practices.
-
Biometric authentication methods for smartphones
Biometric authentication helps ensure only authorized smartphone users can access a network. David Jacobs weighs the pros and cons of three methods.