Audit Preparation: Around and Around We Go, When We’ll Stop We’ll Never Know
Too often we react to tasks by simply doing them. We do them over and over again, perhaps without looking for a bit of optimization…because that could be more work in itself. Eons ago, we physically...
View ArticleExamining The State of Network Security 2013 Survey Findings
Yesterday we announced the findings from our second annual "State of Network Security” survey, which we conducted to identify and analyze current and trending security risks and operational challenges....
View ArticleExamining the Need for Application-Centric Security Policy Management
Today's network security policies continue to grow in volume and complexity, yet oftentimes organizations rely upon manual management, which is too cumbersome, inefficient, and error-prone. The result?...
View ArticleAn In-Depth Look at DDoS – Part 3: DDoS Do's and Don'ts
In part 2 of our DDoS series, we shared some ways to go about protecting yourself against a potential attack. So what should you do in the meantime? Prepare of course!! Here's a List of DDoS...
View ArticleAn In-Depth Look at DDoS – Part 2: Considerations to Improve Your DDoS Defense
Okay so if you’ve read Part 1 of this blog series, you now know what DDoS is (and if you don't, you're on the wrong site!). Now what? Well now we start the phase of defending against these attacks. The...
View ArticleUnderstanding the Link Between Business Applications and the Security Policy
Every once in a while there's a news story about a company that suffered an outage due to "an internal process error". Oftentimes the specific details are not shared, but the consequences are felt -...
View ArticleAn In-Depth Look at DDoS – Part 1: Motives, Methods and Tools
Recently we’ve seen the renewed interest of DDoS methods and tools splash the front pages of major newspapers and news sites throughout the world. Just in the past week a hacktivist group is calling...
View ArticleState of the Firewall: Even More Q&A with Our Panelists
Continuing our follow-up from the State of the Firewall in 2013 webcast, our panelists addressed questions such as "What's the difference between UTM and NGFW?" and "Besides cost savings, what's the...
View ArticleState of the Firewall - Panelists Answer More of your Questions
Since it's RSA week, it's a perfect time to continue the discussion of the State of the Firewall in 2013. Last week we attempted to address the most asked question from our State of the Firewall...
View ArticleState of the Firewall - UTM vs. NGFW
In our recent webcast discussion alongside panelists from Fortinet, NSS Labs and General Motors, we examined the State of the Firewall in 2013. We received more audience questions during the webcast...
View ArticleBring Your Own Device/Disaster
Anyone following information security over the past 3 years has heard the nasty four letter acronym of BYOD or Bring Your Own Device. This phenomenon has taken shape as the consumerization of IT has...
View ArticleBarracuda Backdoor Highlights Importance of Configuration Compliance
At the end of last week, SEC Consult Vulnerability Lab issued a security advisory for several Barracuda Networks devices regarding an undocumented backdoor in the firmware that enables an attacker to...
View ArticleDebating the State of the Firewall in 2013
Two weeks ago, AlgoSec guest blogger Matthew Pasccuci wrote about the Evolution of the Firewall. I'd like to continue this discussion... In his blog Matt forsees a network security environment that...
View ArticleCool versus Control: Being a Cool Parent - Part 3 of 3
In part 2 of our Cool vs. Control blog series we examined the traditional corporate security approach to a very cool, yet out-of-control application - email. In part 3, we’ll look at how to enable cool...
View ArticleBack in Time and Back to the Future: Looking at the Evolution of the Firewall
Guest post by Matthew Pascucci, Information Security Writer and PractitionerAs we’ve entered a New Year and we look back at the events of the past year, I thought it would be interesting to examine the...
View ArticleThe Need for Application-Centric Security Policy Management
In today's interconnected environment, no large organization can run without the applications that run both its internal operations (email, HR, Finance etc.) as well as its customer- and partner-facing...
View ArticleTop 5 Network Security Resolutions for 2013
So we're past the predictions and trends that come with the holiday season and now that it's the beginning of the year, it's time to make our resolutions. Here are my top 5 network security resolutions...
View ArticleNetwork Complexity – The Security Admin’s Kryptonite
Renowned security professional Bruce Schneier has said that "complexity is the worst enemy of security." In our Dangers of Network Security Complexity survey, we found that organizations continue to...
View ArticleCool versus Control (History Repeats Itself): Part 2 of 3
In our first Cool versus Control post we began to examine the evolution of technology and its impact from both a coolness perspective and also from the security point of view. In part 2 of this series...
View ArticleEnhancing Your Security at the Edge: Part 2 of 2
Guest post by Matthew Pascucci, Information Security Writer and PractitionerIn our last article we looked at how to harden your perimeter with traditional firewalls and routers. In part 2 we will...
View Article