Archive | Compliance

PCI Security - The Devil is in the Details

16. November 2009

0 Comments

Joshua Corman, research director for enterprise security at The 451 Group, renewed debate recently on the role that PCI plays in network security in an article featured in CSO Magazine. The article contains a number of Corman quotes from a recent 451 Group client conference. From the excerpts, it's clear that the Corman is trying to sound the alarm, and it may be falling on deaf ears.

Continue reading...

Government Data Loss: Double Standard

16. November 2008

0 Comments

Will the federal government be held to the same security and compliance standards that it has mandated for corporations or that states impose on businesses operating within their borders?   It seems unlikely, so we're faced with a serious dilemma.  How can we be sure as citizens that the ever-growing volume of citizen and visitor data being compiled by the government will be “secure”? 

Continue reading...

Governator Vetoes Bill

18. October 2008

1 Comment

Clearly, the most meaningful consumer data protection comes from taking responsible and prudent steps to prevent data loss. Even under the best of circumstances, no one can guarantee that a loss will never occur and that's where California led the way in disclosure legislation.  In my opinion, this legislation was ill-conceived and I hope it won't be back.

Continue reading...

Are SIEM and Log Management the same thing?

3. July 2008

1 Comment

This was the title of a recent NetworkWorld article that addressed a frequent question that companies ask when looking for solutions to network security, network management and regulatory compliance issues.

Continue reading...

PCI in a Box, PCI Simplified, PCI Made Easy

27. June 2008

0 Comments

These are the kinds of headlines, taglines, and marketing pitches from Log Management and SIEM vendors that fill my inbox daily, and I'm sure yours as well.

Continue reading...