Search the Library
 
Home >

Security

>

Application Security

Application Security encompasses measures taken to prevent exceptions in the security policy of an application or the underlying system (vulnerabilities) through flaws in the design, development, or deployment of the application.

Results 1 - 25 of 49 matches Sort Results By : Published Date | Title | Company name
How Can Identity and Access Management Help Me with PCI Compliance While Improving Overall Security?
By : CA Published Date: Dec 31, 2007
PCI Compliance has become a business requirement for any company involved in the processing of credit card information. It requires strong security controls over all systems and applications that process or store cardholder information. These controls serve to manage vulnerabilities and to control access to all confidential information.
Download Now
CA
Identifying & Thwarting Malicious Intrusions
By : MX Logic Published Date: Apr 24, 2008
Rootkits, Trojans, ransomware, Denial-of-Service and much more – this newly released white paper from MX Logic covers the everchanging security threat landscape. Learn what malicious intrusions are out there, how to identify them and how to keep your network safe.

Download Now
MX Logic
On-Demand Vulnerability Management
By : Qualys Published Date: Aug 08, 2006
Learn how to start your own self-auditing process by setting goals and answering key questions about your infrastructure. This podcast examines what to look for in a self-audition solution, how to use vulnerability management to ease the pain and why your software solution really matters.
Download Now
Qualys
Secure Online Data Transfer with SSL
By : thawte Published Date: Aug 24, 2004
A guide to understanding SSL certificates, how they operate and their application. By making use of an SSL certificate on your web server, you can securely collect sensitive information online, and increase business by giving your customers confidence that their transactions are safe.
Download Now
thawte
Social Networking: Brave New World or Revolution from Hell?
By : MessageLabs Published Date: Feb 07, 2008
According to recent surveys, employee social networking is growing rapidly. Learn the pros and cons of employee social networking, from creating business development opportunities to just goofing off. Also, learn how social networking is raising new challenges for enterprise security, and the distinct advantages of implementing MessageLabs Web Services.
Download Now
MessageLabs
Understanding Web Application Security Challenges
By : IBM Published Date: Dec 26, 2007
As businesses grow increasingly dependent upon Web applications, these complex entities are becoming more difficult to secure. Most companies equip their Web sites with firewalls, Secure Sockets Layer (SSL), and network and host security, but the majority of attacks are on applications themselves.
Download Now
IBM
What's the Big Deal with Managed Security Services?
By : MX Logic Published Date: Jan 16, 2008
In this recent report, the Aberdeen Group’s research revealed that 100% of Best-in-Class companies consume some managed security services as part of their security strategy. The most widely deployed and easiest to implement managed security service is email security.

Download Now
MX Logic
Web Application Security: Too Costly to Ignore
By : HP Software Published Date: May 20, 2008
Download this free whitepaper from HP Software to learn about the gaps in most application security programs and how to incorporate application security across the lifecycle.
Download Now
HP Software
Web Application Security: Automated Scanning Versus Manual Penetration Testing
By : IBM Published Date: Dec 27, 2007
There are many ways to uncover Web application vulnerabilities. This white paper examines a few of these vulnerability detection methods – comparing and contrasting manual penetration testing with automated scanning tools. What you’ll discover is that neither of these methods are an exhaustive method for identifying Web application vulnerabilities.
Download Now
IBM
CA SiteMinder: Security for Enterprise Web Applications
By : CA Published Date: Dec 01, 2006
This technical white paper explains how CA SiteMinder provides all the essential security services required to meet the challenge of building and managing secure websites, while also including management features and technical capabilities that can reduce the total cost of ownership.
Download Now
CA
CA SiteMinder 100 Million User Project: Cost-Effective Access Management for Large-Scale Enterprise
By : CA Published Date: Jun 16, 2005
This paper describes CA SiteMinder performance and scalability in a 100 million user deployment, the test environment, tests conducted and their results, and important conclusions and recommendations.
Download Now
CA
Effective Web Policies: Ensuring Staff Productivity and Legal Compliance
By : Sophos Published Date: Apr 10, 2008
Employees increasingly expect to use the internet at work for their own personal use in return for longer hours, working from home and interrupting vacations. This has a number of security, productivity, bandwidth and legal ramifications that require organizations to create and implement a web usage policy that is backed up by effective web filtering tools.
Download Now
Sophos
The Value of Enterprise SSO to HIPAA Compliance
By : Imprivata Published Date: Nov 02, 2005
When the U.S. Congress passed the Health Insurance Portability and Accountability Act (HIPAA) of 1996, among the law's many provisions was the establishment of formal regulations designed to protect the confidentiality and security of patient information. In addition to mandating new policies and procedures, the HIPAA security regulations require mechanisms for controlling access to patient data on healthcare providers' information technology (IT) systems.
Download Now
Imprivata
What's Missing from SEM? Security Management is More than Event Management
By : NetIQ Corporation Published Date: Jan 10, 2007
This white paper identifies what is required for a comprehensive and integrated security management solution and examines the difference between SEM, SIM and SIEM and the challenges of enterprise level security monitoring.
Download Now
NetIQ Corporation
GoToMeeting Security White Paper
By : Citrix Online Published Date: Jan 31, 2008
This document provides a technical description of the security features built into GoToMeeting. It has been written for technical evaluators and security specialists who are responsible for ensuring the safety of their company’s network and the privacy and integrity of business communications.
Download Now
Citrix Online
Information Security Obligations Under UK Law
By : PassGo Published Date: Oct 21, 2005
The law in the United Kingdom has various influences on organizational information security policy. As well as protecting the rights of individuals and organizations, it also imposes many duties and responsibilities. For organizations to meet their legal obligations a number of technical controls can be put in place.
Download Now
PassGo
Leveraging Automation to Quickly Reveal Vulnerabilities
By : Cenzic Published Date: Nov 30, 2005
With web applications constantly evolving, finding vulnerabilities is a challenging, costly and time-consuming undertaking.  Find out how Cenzic's powerful security solutions help information security teams quickly identify problems, regularly assess web application security strength and ensure regulatory compliance.
Download Now
Cenzic
Meeting the PCI Application Security Requirements: Building Compliance In
By : Ounce Labs Published Date: Nov 15, 2007
The PCI DSS is demonstrably becoming a de facto standard of due care for any organization responsible for the privacy and integrity of data. The increased focus on application security in the latest revisions of the PCI DSS can be traced directly to many of the recent high profile breaches, where insecure applications have proved to be the point of access for hackers, and the source of data loss.
Download Now
Ounce Labs
PKWARE Enterprise Security and Compression Solutions
By : PKWARE Published Date: Oct 26, 2005
The Butler Group provides a technology audit on PKWARE's SecureZIP cross-platform data file security software.
Download Now
PKWARE
Protecting Client Systems from the Crimeware Invasion
By : Symantec Published Date: Aug 30, 2006
The IT threat landscape has changed from individual hackers disrupting network operations to organized crime stealing confidential information. Antivirus technology must be joined by a coordinated, multilayered defense that includes proactive vulnerability-based intrusion prevention, file-based intrusion prevention, and inbound and outbound traffic control.
Download Now
Symantec
Preventing Your Next Microsoft Exchange Outage
By : AppAssure Software Published Date: Apr 25, 2008
Messaging has rapidly become the one, true business critical application in use today by many, probably most, enterprises. Even more so than Enterprise Resource Planning or other cross-business applications, any failure in the messaging system is noticed by, and affects everyone. If a person cannot get an e-mail to or from another person then they are immediately in contact with the help desk to report the problem. Users are far less inclined to be forgiving when it comes to an e-mail outage; they just expect it to work.
Download Now
AppAssure Software
Security Design Principles
By : Nixu Published Date: Oct 18, 2006
This white paper is an overview of the Nixu Security System and the various security principles it encompasses.  Topics discussed include security design, application security, OS hardening, patch management, and more.
Download Now
Nixu
Securing Web Applications: The Time Is Now
By : Cenzic Published Date: Jul 01, 2006
Enterprises need to utilize software testing that can automatically review applications for security problems. This document examines the market drivers and technology associated with software security code review products and discusses how Cenzic is addressing this urgent need.

Download Now
Cenzic
Security at the Next Level: Are Your Web Applications Vulnerable?
By : HP Published Date: Oct 15, 2007
Are your Web applications vulnerable? What techniques are hackers using to exploit Web-based applications and how can you protect your site? Unfortunately, most security products available today cannot adequately examine the applications that reside on your Web server! Yet these applications often provide backend access to confidential data!
Download Now
HP
Secure at the Source: Implementing Source Code Vulnerability Testing in the Development Life Cycle
By : Ounce Labs Published Date: Jul 05, 2007
Organizations should implement source code analysis tools as part of the software development life cycle to find and fix the highest number of security issues early in the project. This will result in a higher-quality product and lower overall application life cycle costs. Countless studies and analyst recommendations suggest the value of improving software security during the development life cycle (SDLC) rather than trying to address security vulnerabilities in software discovered after widespread adoption and deployment.

Download Now
Ounce Labs