Search the Library
 
Home >

Security

>

Security Policies

A Security Policy is a plan of action for tackling security issues, or a set of regulations for maintaining a certain level of security. It can span anything from the practices for securing a single computer, to building/premises security, to securing the existence of an entire nation-state.

Results 1 - 25 of 65 matches Sort Results By : Published Date | Title | Company name
Guide to Effectively Remediate Network Vulnerability and Policy Compliance
By : Qualys Published Date: Aug 09, 2007
Consistent, ongoing execution of vulnerability management and policy compliance is difficult, if not impossible to do on a manual basis. There are simply too many "moving parts" to juggle and act on in a timely and cost-effective manner. This guide provides a step-by-step guide for automating the vulnerability and compliance workflow process.
Download Now
Qualys
How One Company Conquered the Audit Challenge
By : Qualys Published Date: Aug 08, 2006
The Marine Corps Community Services (MCCS) manages a global network that serves Marines and their families. MCCS chose a managed service to conduct comprehensive vulnerability assessments and prioritize patches and fixes.
Download Now
Qualys
IT Departments on Data Security: A Research Concepts Survey
By : Absolute Software Published Date: Apr 17, 2008
A survey of 185 IT professionals finds that, although computer and data security are high priorities, they are surprisingly unprepared to prevent data breaches and computer theft. 1 out of 4 organizations surveyed had a data breach in the past year. Preventative measures are found to be consistently undermined, with only 1 in 100 employees consistently following security policy. This white paper explores the survey findings.
Download Now
Absolute Software
2007 Gartner End Point Protection Magic Quadrant Report
By : McAfee Published Date: Dec 01, 2007
This report from Gartner, Inc. discusses how traditional point product anti-virus, anti-spyware and personal firewall markets have been eclipsed by broader suites of related security technologies, which Gartner has labeled the EPP (Endpoint Protection Platforms). Various EPP vendors are evaluated based on their ability to execute in the marketplace and completeness of vision.
Download Now
McAfee
3 Steps for Bullet-Proof Wireless LAN Security & Management
By : AirDefense Published Date: Apr 05, 2006
This paper outlines the specific elements of wireless LAN security (perimeter control, access control, date protection, and monitoring) and WLAN management (configuration, fault diagnostics, network usage, and policy enforcement). Reader will gain a keen understanding of how to effectively lockdown a wireless LAN and manage it for peak performance.
Download Now
AirDefense
NAC at the Endpoint: Control Your Network Through Device Compliance
By : Sophos Published Date: May 23, 2008
Protecting IT networks used to be a straightforward case of encircling computers and servers with a firewall and ensuring that all traffic passed through just one gateway. However, the increase in mobile workers, numbers and type of device and the amount of non-employees requiring network access, has led to a dissolving of that network perimeter.
Download Now
Sophos
Not Just Words: Enforce Your Email and Web Acceptable Usage Policies
By : MessageLabs Published Date: Jul 15, 2008
Unmanaged employee use of email and the web can subject any organization to costly risks including litigation, regulatory investigations and public embarrassment.  Download this guide and learn how to deploy clearly written Acceptable Usage Policies (AUPs) for email and web usage, supported by employee training and enforced by proven technology solutions.
Download Now
MessageLabs
On-Demand Vulnerability Management
By : Qualys Published Date: Aug 08, 2006
Learn how to start your own self-auditing process by setting goals and answering key questions about your infrastructure. This podcast examines what to look for in a self-audition solution, how to use vulnerability management to ease the pain and why your software solution really matters.
Download Now
Qualys
PCI Compliance: Are You Onboard?
By : Tripwire Published Date: Jan 26, 2007
This paper covers the basic requirements of PCI, with a focus on the administrative and technical elements of the program. It also reviews the validation requirements of the standard and potential sanctions for failure to comply.
Download Now
Tripwire
Proactively Reduce Risk and Improve IT Security in Physical and Virtual Environments
By : Tripwire Published Date: Mar 21, 2008
Learn more about the security risks and vulnerabilities faced by organizations, and the elements of a proactive security approach. Then find out how Tripwire helps organizations attain and maintain a good security posture using industry-leading configuration assessment and change auditing to harden systems against security breaches, automate compliance with security standards and policies, identify configuration changes, and resolve vulnerabilities.
Download Now
Tripwire
Securing Your Apache Web Server with a thawte Digital Certificate
By : thawte Published Date: Jul 16, 2003
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, how it benefits your company and how your customers can tell if a site is secure.
Download Now
thawte
Securing Your Microsoft IIS Web Server with a thawte Digital Certificate
By : thawte Published Date: Jul 16, 2003
Learn how you can build customer confidence around Internet security. This guide will explain the various ways in which your business can benefit if you secure your MSIIS server with a Thawte digital certificate.
Download Now
thawte
Strengthening Network Security with On Demand Vulnerability Management & Policy Compliance
By : Qualys Published Date: Aug 28, 2007
Despite defensive efforts with firewalls, intrusion detection, antivirus and the like, criminals, careless employees and contractors have exposed more than 158 million digital records of consumers' personally identifiable information since 2005. This security guide describes the requirements and on demand software-as-a-service (SaaS) solution called QualysGuard for effective vulnerability management and policy compliance.
Download Now
Qualys
Stopping Data Leakage: Exploiting Your Existing Security Investment
By : Sophos Published Date: Jun 20, 2008
As attitudes to work and information continue to evolve away from those of the past, organizations are become more aware of the acute need to control the information that flows into, through and out of their networks. This paper demonstrates the need for a high-profile acceptable use policy to prevent data leakage, gives practical guidance on how to use current investments in IT security technologies at the gateway and endpoint to support this policy, and describes where new investment should realistically be made.
Download Now
Sophos
UNIX Host Access Management with CA Access Control
By : CA Published Date: May 07, 2007
UNIX and Linux systems have inherent security issues that pose high risk to the business objectives of complying with regulations and data protection.  To reduce security risks, you need full superuser containment and the ability to enforce strict access control to critical system resources through centralized and automated policy management across different platforms.
Download Now
CA
Vulnerability Management for Dummies: How to Implement a Successful Vulnerability Management Program
By : Qualys Published Date: Mar 28, 2008
As a business owner, or someone responsible for network security within your organization, you need to understand how to prevent attacks and eliminate network weaknesses that leave your business exposed and at risk. Vulnerability Management for Dummies arms you with the facts and shows you how to implement a successful Vulnerability Management program.
Download Now
Qualys
Wireless Security: Ensuring Compliance with HIPAA, GLBA, SOX, DoD 8100.2 & Enterprise Policy
By : AirDefense Published Date: Apr 05, 2006
This white paper is designed to guide network administrators and security managers to design, implement, and enforce wireless LAN security policies that enable every organization to fully reap the benefits of wireless LANs without experiencing undue management pains and security holes.
Download Now
AirDefense
What's the Big Deal with Managed Security Services?
By : MX Logic Published Date: Jan 16, 2008
In this recent report, the Aberdeen Group’s research revealed that 100% of Best-in-Class companies consume some managed security services as part of their security strategy. The most widely deployed and easiest to implement managed security service is email security.

Download Now
MX Logic
Best Practices for Wireless Network Security and Sarbanes-Oxley Compliance
By : AirDefense Published Date: Apr 05, 2006
This white paper will explore what security challenges wireless networks present, suggest best practices to ensure Wireless LAN security, and demonstrate how AirDefense Enterprise, a Wireless Intrusion Detection and Prevention System, can help you define, monitor and enforce your wireless security policy.
Download Now
AirDefense
Datagate: The Next Inevitable Corporate Disaster?
By : McAfee Published Date: Apr 01, 2007
Is data leakage the next wave of impending disaster that could sweep the global enterprise landscape? In a 2007 study conducted by Datamonitor, more than 60 percent of enterprises surveyed have experienced data leakage within the last year, and 33 percent believe it could put them out of business. Data leakage has the potential to change the face of business and the global economy if it continues to go unchecked.
Download Now
McAfee
Eurekify Enterprise Role Manager for CA Identity Manager
By : CA Published Date: May 12, 2008
Organizations are facing an explosion in the number of users of all types - employees, customers, partners and contractors - all of which need access to applications, data and other resources. While trying to provide access to the resources each user needs as quickly as possible, the organization must also ensure users do not have access to things they do not need.
Download Now
CA
Effective Web Policies: Ensuring Staff Productivity and Legal Compliance
By : Sophos Published Date: Apr 10, 2008
Employees increasingly expect to use the internet at work for their own personal use in return for longer hours, working from home and interrupting vacations. This has a number of security, productivity, bandwidth and legal ramifications that require organizations to create and implement a web usage policy that is backed up by effective web filtering tools.
Download Now
Sophos
Effective Email Policies: Why Enforcing Proper Use is Critical to Security
By : Sophos Published Date: May 07, 2008
The unmonitored and unguarded use of email by employees poses a multitude of risks to organizations. The distribution of inappropriate or offensive content, malicious emails, and the risks of data leakage all threaten working environments, IT resources and an organization's reputation. A comprehensive, transparent and enforceable email acceptable use policy (AUP), combined with robust email security solutions, dramatically reduces exposure to these risks.
Download Now
Sophos
FISMA Compliance: Making the Grade
By : Qualys Published Date: Jan 30, 2006
A Qualys Guide to Measuring Risk, Enforcing Policies, and FISMA compliance regulations.
Download Now
Qualys
FISMA Prescriptive Guide
By : Tripwire Published Date: Mar 31, 2008
Discover how to achieve and maintain FISMA compliance to ensure security of systems and data.
Download Now
Tripwire