Big Blog

Arts & Culture
Biological Science
Blog Watch
Computer Games
Computer Security
Cricket
Data Privacy
Developer
Domain Names
E-commerce
Gadgets
General Science
Handhelds
IP & Patents
Java
Linux
MP3
Nanotech
Online Auctions
Online Legal Issues
Open Source
Personal Finance
Photography
Quirky
Robotics
Search Engines
Space Science
Top Internet
Top Stories
Top Tech
Video Games
Web Developer
Webmaster Tips
XML & Metadata
{Home}



Companies get wise about spending on data security Security software spending expected to hit 12 5B by 2014: related news

Companies get wise about spending on data security: Security software spending expected to hit $12.5B by 2014

Latest News Special Reports Business Advice News From Other Cities Advertise Online Most Viewed Stories Most Emailed Stories

More customers are shopping for security software online

A recent report from The NPD Group revealed some interesting statistics about consumers' perceptions and awareness of security software products. Among the findings: the majority of security software purchases occur on the Internet, free security software downloads are competing directly with paid security software, and the biggest perceived household security threat is viruses.

Fortify Software: Survey exposes 81% of companies know they are vulnerable to hacking

Eight one percent of IT professionals admit their applications are vulnerable and are very concerned about hackers attacking business-critical applications.According to a survey released by Fortify Software, more than 300 IT security professionals, drawn mainly from 1000+ sized companies at the recent Infosecurity Europe 2008 event, cited application security as a key concern, with nearly a third admitting that they are "very worried" about the security of their applications.Moreover, a quarter of companies surveyed, outsource application development BUT do not specify any security processes or technologies be applied to ensure the security of outsourced applications.

Survey exposes 81% of companies know they are vulnerable to hacking

Eight one percent of IT professionals admit their applications are vulnerable and are very concerned about hackers attacking business-critical applications. According to a survey released by Fortify Software, more than 300 IT security professionals, drawn mainly from 1000+ sized companies at the recent Infosecurity Europe 2008 event, cited application security as a key concern, with nearly a third admitting that they are "very worried” about the security of their applications. Moreover, a quarter of companies surveyed, outsource application development BUT do not specify any security processes or technologies be applied to ensure the security of outsourced applications.

Oracle Label Security for Privacy and Compliance

Oracle Label Security helps organizations address security and compliance requirements using sensitivity labels such as confidential and sensitive. Sensitivity labels can be assigned to users in the form of label authorizations and associated with operations and objects inside the database using data labels. Label authorizations provide tremendous flexibility in making access control decisions and enforcing separation of duty. Oracle Label Security can be used to address numerous operational issues related to security, compliance and privacy. Used with Oracle Database Vault, Oracle Label Security label authorizations are factors that control access to applications, databases and data. Label authorizations can be used in conjunction with virtual private database to mask out PII data.

Oracle Label Security for Privacy and Compliance

Oracle Label Security helps organizations address security and compliance requirements using sensitivity labels such as confidential and sensitive. Sensitivity labels can be assigned to users in the form of label authorizations and associated with operations and objects inside the database using data labels. Label authorizations provide tremendous flexibility in making access control decisions and enforcing separation of duty. Oracle Label Security can be used to address numerous operational issues related to security, compliance and privacy. Used with Oracle Database Vault, Oracle Label Security label authorizations are factors that control access to applications, databases and data. Label authorizations can be used in conjunction with virtual private database to mask out PII data.

Oracle Label Security for Privacy and Compliance

Oracle Label Security helps organizations address security and compliance requirements using sensitivity labels such as confidential and sensitive. Sensitivity labels can be assigned to users in the form of label authorizations and associated with operations and objects inside the database using data labels. Label authorizations provide tremendous flexibility in making access control decisions and enforcing separation of duty. Oracle Label Security can be used to address numerous operational issues related to security, compliance and privacy. Used with Oracle Database Vault, Oracle Label Security label authorizations are factors that control access to applications, databases and data. Label authorizations can be used in conjunction with virtual private database to mask out PII data.

Procter and Gamble Selects IBM Internet Security Systems to Help Amplify Its Threat Protection, Simplify Its Security

ARMONK, NY, Aug 29 (MARKET WIRE) -- IBM (NYSE: IBM) today announced that Procter and Gamble (NYSE: PG) has selected products and services from IBM's Internet Security Systems (ISS) division to expand its global cyber-security initiative. The agreement will strengthen Procter and Gamble's (P&G) threat protection arsenal by streamlining the management of its layered security tools and ultimately can help deliver substantial savings in administrative costs. This simplified security approach will streamline the management and help increase the efficiency of P&G's cyber-security project. First developed in 2005, P&G pioneered a layered, preventative network protection and vulnerability assessment project to mitigate and eliminate major costly internal vulnerabilities.

Study Says Open Source Software a Security Risk

chareverie writes "Fortify Software released a study where they concluded that open source software poses a large security risk to corporations who have implemented it. They reason this by stating that the fault lies within the open source communities and their failure to adhere to minimum security practices. Fortify Software studied 11 open source software packages, where the application server Tomcat was determined to be the best. The other 10 were found to have poor results, with those being Derby, Geronimo, Hibernate, Hipergate, JBoss, Jonas, OFBiz, OpenCMS, Resin and Struts. Jacob West, manager of Fortify's research group, reminds that purpose of the study was 'not to condemn open source software, but rather to point out that the security practices need to improve because open source adoption by enterprises and governments is growing

Research and Markets: New Insight into the Global Security Software Market with Forecasts 2007-2010

(July 10, 2008)-- Research and Markets has announced the addition of the "Security Software Market 2007-2010" report to their offering. The demand for security software is growing because of increased threat perception and instances of data theft, network breach and fraud. Further, the continuous increase in the usage of internet and the sharing of secondary data storage devices has also resulted in the demand for security software.

MetaBank(TM) Implements Vormetric Data Security for PCI DSS Compliant Database Encryption

SANTA CLARA, Calif.--(BUSINESS WIRE)--July 15, 2008--Vormetric, Inc., the leader in data security management and enforcement solutions, announced today that MetaBank has implemented Vormetric Data Security to encrypt and protect sensitive personal and financial information on customers and credit card holders. MetaBank selected Vormetric Data Security to encrypt SQL Servers storing sensitive data based on ease of implementation, transparency, performance and centralized policy and key management.

McAfee, Inc. and MXI Security Protect Governments With Unparalleled End-to-End Data Security

SANTA CLARA, Calif. and MONTREAL, July 29 /PRNewswire-FirstCall/ -- McAfee, Inc. (NYSE: MFE) and MXI Security today announced that they will join forces to provide government organizations with secure, portable devices backed by enterprise risk management software. Together the companies will empower federal, state and local agencies with unparalleled portable security for their most sensitive data and technology systems.

Two Black Hat Talks On Apple Security Cancelled

An anonymous reader writes "Two separate Apple security talks have been nixed at the last minute from next week's Black Hat security conference in Las Vegas. The Washington Post's Security Fix blog reports that Apple researcher Charles Edge was to present on flaws in Apple's FileVault encryption plan, but asked Black Hat to cancel the talk, citing confidentiality agreements with Apple. Then on Friday, Apple pulled its security engineering team out of a planned public discussion on the company's security practices — which would have been a first for Apple. 'Marketing got wind of it, and nobody at Apple is ever allowed to speak publicly about anything without marketing approval,' a Black Hat spokesman said."

The Pragmatic CSO

Ben Rothke writes "The Pragmatic CSO: 12 Steps to become a Pragmatic CSO is worth reading for one sentence on page 12 which states: It's not about technology — it's about business. The even better news is that the book is full of insightful ideas like that, on how information should work, and how to make it work in today's large enterprise organizations. One of the mistakes many security professionals make is that they think of security for its own sake, when security is simply meant to support the business. CxO's could care less about encryption key lengths and operating systems. While they don't care about the technical details, the people from information security often mistakenly communicate to them in those terms." Keep reading for the rest of Ben's review.

Rising Enterprise Adoption of Open Source Software is Putting Businesses At Greater Risk

PRNewswire/ -- Fortify Software, Inc., the market leader in enterprise application security solutions for business software assurance, released today its Open Source Security Study which reveals that the most widely-used open source software packages for the enterprise are exposing users to significant and unnecessary business risk. The study validates that Open Source Software (OSS) development communities have yet to adopt a secure development process and often leave dangerous vulnerabilities unaddressed. Additionally, the study found that nearly all OSS communities fail to provide users access to security expertise to help remediate these vulnerabilities and security risks.

Rising Enterprise Adoption of Open Source Software is Putting Businesses At Greater...

Rising Enterprise Adoption of Open Source Software is Putting Businesses At Greater Risk New data from Fortify Software finds that widely-used open source software packages do not employ best practices for securing code SAN MATEO, Calif., July 21 /PRNewswire/ -- Fortify Software, Inc., the market leader in enterprise application security solutions for business software assurance, released today its Open Source Security Study which reveals that the most widely-used open source software packages for the enterprise are exposing users to significant and unnecessary business risk. The study validates that Open Source Software (OSS) development communities have yet to adopt a secure development process and often leave dangerous vulnerabilities unaddressed.

Security Hole in Citibank ATMs Underscores Larger Security Flaws in Banking Networks According to TraceSecurity

PRNewswire/ -- TraceSecurity, a leading provider of SaaS security compliance and risk management solutions, disclosed today that the case of Citibank customers whose funds were hacked via the connection between ATMs and third parties processing their PIN codes, are just the tip of the iceberg when it comes to the overall security and compliance of the networks that process ATM transactions. Over the past five years, TraceSecurity personnel have uncovered thousands of un-patched ATM processing servers while performing routine security compliance inspections. TraceSecurity is responsible for performing annual audits and inspections for firms in the financial services space to ensure they are complying with industry and government regulations that help protect consumers' sensitive data as well as the funds in their accounts.

Security Hole in Citibank ATMs Underscores Larger Security Flaws in Banking Networks According to TraceSecurity

PRNewswire/ -- TraceSecurity, a leading provider of SaaS security compliance and risk management solutions, disclosed today that the case of Citibank customers whose funds were hacked via the connection between ATMs and third parties processing their PIN codes, are just the tip of the iceberg when it comes to the overall security and compliance of the networks that process ATM transactions. Over the past five years, TraceSecurity personnel have uncovered thousands of un-patched ATM processing servers while performing routine security compliance inspections. TraceSecurity is responsible for performing annual audits and inspections for firms in the financial services space to ensure they are complying with industry and government regulations that help protect consumers' sensitive data as well as the funds in their accounts.

Security Hole in Citibank ATMs Underscores Larger Security Flaws in Banking Networks According to TraceSecurity

BATON ROUGE, La., July 2 /PRNewswire/ -- TraceSecurity, a leading provider of SaaS security compliance and risk management solutions, disclosed today that the case of Citibank customers whose funds were hacked via the connection between ATMs and third parties processing their PIN codes, are just the tip of the iceberg when it comes to the overall security and compliance of the networks that process ATM transactions. Over the past five years, TraceSecurity personnel have uncovered thousands of un-patched ATM processing servers while performing routine security compliance inspections. TraceSecurity is responsible for performing annual audits and inspections for firms in the financial services space to ensure they are complying with industry and government regulations that help protect consumers' sensitive data as well as the funds in their

Security Hole in Citibank ATMs Underscores Larger Security Flaws in Banking Networks According to TraceSecurity

BATON ROUGE, La., July 2 /PRNewswire/ -- TraceSecurity, a leading provider of SaaS security compliance and risk management solutions, disclosed today that the case of Citibank customers whose funds were hacked via the connection between ATMs and third parties processing their PIN codes, are just the tip of the iceberg when it comes to the overall security and compliance of the networks that process ATM transactions. Over the past five years, TraceSecurity personnel have uncovered thousands of un-patched ATM processing servers while performing routine security compliance inspections. TraceSecurity is responsible for performing annual audits and inspections for firms in the financial services space to ensure they are complying with industry and government regulations that help protect consumers' sensitive data as well as the funds in their

Data Security for Your 401(k) in an Insecure World

The security of an individual's personal data is paramount in today's electronic world. Every day we read about another case in which data security is breached and confidential information is compromised. The risks are high, and a virtual fortress must be built around sensitive data whether the information is in electronic or paper form.

Data Security for Your 401(k) in an Insecure World

The security of an individual's personal data is paramount in today's electronic world. Every day we read about another case in which data security is breached and confidential information is compromised. The risks are high, and a virtual fortress must be built around sensitive data whether the information is in electronic or paper form.

Data Security for Your 401(k) in an Insecure World

The security of an individual's personal data is paramount in today's electronic world. Every day we read about another case in which data security is breached and confidential information is compromised. The risks are high, and a virtual fortress must be built around sensitive data whether the information is in electronic or paper form.

Data Security for Your 401(k) in an Insecure World

The security of an individual's personal data is paramount in today's electronic world. Every day we read about another case in which data security is breached and confidential information is compromised. The risks are high, and a virtual fortress must be built around sensitive data whether the information is in electronic or paper form.

Are IT Security Professionals Less Happy?

zentanu writes "It's said that if you want to be happy, be a gardener. What about IT security professionals? Having worked as an IT security consultant for several years, I now wonder if my job has a negative influence on my happiness, because it constantly teaches me to focus on the negative side of life: I always have to think about risks and identify all sorts of things that could go wrong. As an auditor I search for errors that others have made and haughtily tell them. As a penetraion tester I break systems that system engineers and administrators have laboriously built. I assume inside threats and have to be professionally suspicious. The security mindset surely helps me in my job, but is it good for me on the long run? What kind of influence has being an IT security professional had on your general attitude towards life? What helps


Search News:


Copyright © 2001-2008 Jonathan Hedley