| 1. |
Outsourcing Security Benefits, Costs, Provider Selection (3 Pages)
by Jim McLendon
Apr 11, 2002 Abstract : It's the middle of the night. A shadowed figure crouches by the window. He retrieves a menacing instrument and begins fiddling with the lock. But the intruder won't get far: the homeowners have contracted a security provider to monitor a tight alarm system-or so they thought... Benefits of Outsourcing Security Without effective security, companies risk losing money and customer trust. With good security, companies have the power to maintain stakeholder value, customer loyalty, and competitive advantage. Faced with the complexity of providing effective security, many companies are turning to outsourcing. Measuring The Cost of Such an Outsourcing Evaluating the cost of outsourcing can be challenging because most organizations cannot fully estimate the financial impact of such a decision. Selecting a Managed Security Services Provider Guidelines for selecting a dependable managed security services provider.
Type: Article
|
| 2. |
The 'S' in SAP Doesn't Stand for Security (that goes for PeopleSoft too) (3 Pages)
by M. Reed
Dec 8, 1999 Abstract : During the course of product evaluations for a customer, the Technology Evaluation Center has uncovered a potential security hole in SAP R/3's three-tier architecture. SAP has revealed that they expect the database or third party products to handle security between the application server and the database server. If the client does not take these extra measures, the master password for the SAP database instance travels over the network in the clear, and can be captured. PeopleSoft has the same issue.
Type: Article
|
| 3. |
E&Y Spins-Off eSecurity Online and Unveils Security Vulnerability Assessment Services (3 Pages)
by L. Taylor
Jul 12, 2000 Abstract : In an effort to assist corporations in preventing security related losses, Ernst & Young announced that it is spinning off a new online security venture. The new venture's lead product line is their Security Vulnerability Assessment service.
Type: Article
|
| 4. |
The Whys and Hows of a Security Vulnerability Assessment (9 Pages)
by L. Taylor
Aug 9, 2000 Abstract : TEC outlines the reasons for having a Security Vulnerability Assessment done, how a security vulnerability assessment is performed, what can be gained by enlisting the Security Vulnerability Assessment process, and what you should expect to see in a Security Vulnerability Assessment report. After all, the most important reason for having a Security Vulnerability Assessment performed is to enable corrective action. How can you know what to secure if you don't know what is insecure?
Type: Article
|
| 5. |
Outsourcing Security Part 1: Noting the Benefits (5 Pages)
by Jim McLendon
Apr 5, 2002 Abstract : Without effective security, companies risk losing money and customer trust. With good security, companies have the power to maintain stakeholder value, customer loyalty, and competitive advantage. Faced with the complexity of providing effective security, many companies are turning to outsourcing.
Type: Article
|
| 6. |
Security Risk Assessment and Management in Web Application Security (4 Pages)
by Caleb Sima
Jan 27, 2006 Abstract : Corporations are at risk because Web applications and servers make them susceptible to hackers and cyber crooks. However, companies can perform security risk assessments that mitigate risk by applying security risk management processes that valuate and prioritize IT assets.
Type: Article
|
| 7. |
The 7 Habits of Highly Effective Security (3 Pages)
by L. Taylor
Jun 6, 2000 Abstract : You know your organization needs to be proactive about security, but you don't know what that means. You’re a busy executive and you need your security agenda summed up in a nutshell, but you know nothing about information security. What 'to do' list should you give your CIO?
Type: Article
|
| 8. |
Compaq, HP, IBM, Intel and Microsoft Create New PC Security Alliance (3 Pages)
by L. Taylor
Oct 13, 1999 Abstract : Five key vendors, Compaq, HP, IBM, Intel, and Microsoft have allied together to develop a new hardware and software specification for personal computer security. The alliance has set a goal of publishing a specification proposal by the second half of 2000. It remains to be seen what impact this will have on the rapidly increasing number of information security attacks.
Type: Article
|
| 9. |
Outsourcing Security Part 3: Selecting a Managed Security Services Provider (4 Pages)
by Jim McLendon
Apr 11, 2002 Abstract : As the final article in a three-part series on outsourcing security, the following article provides guidelines for selecting a dependable managed security services provider.
Type: Article
|