Industry Reports ArcSight and Ponemon Institute Release First Annual Cost of Cyber Crime Stud

ArcSight and Ponemon Institute Release First Annual Cost of Cyber Crime Stud »

The First Annual Cost of Cyber Crime Study reveals median annualized cost of cyber crime is $3.8 million per participating organization; cost driven by more than one successful attack per organization each week. Read More >> ...

July 27 2010 / No comment / Read More »
Cisco Midyear Security Report Surveys Network Security Landscape

Cisco Midyear Security Report Surveys Network Security Landscape »

According to the Cisco 2010 Midyear Security Report released today, businesses must change their mindset on security to help ensure that their networks and vital corporate information are protected from evolving security threats. Read...

July 26 2010 / No comment / Read More »
News Analysis

Aviation Authority report recommends data encryption and multi-factor authentication as precautions against data loss »

Aviation Authority report recommends data encryption and multi-factor authentication as precautions against data loss

The Federal Aviation Administration (FAA) has been in the news recently for wrong reasons. It was criticized for inadequately securing vital information...

Jul 15 2010 / No comment / Read More »

Identification of critical data is the first step of data protection, says industrial espionage expert »

Identification of critical data is the first step of data protection,  says industrial espionage expert

“The first thing companies have to do to protect their information is to detect the five percent of vital data that is...

Jun 30 2010 / No comment / Read More »

Consumers tend to move to service providers that handle their data with care, says IT security expert »

Consumers tend to move to service providers that handle their data with care, says IT security expert

According to a report on Identity Theft Resource Center, astounding volumes of critical data records were breached in 2009 – a trend...

Jun 17 2010 / No comment / Read More »

The Key to Passwords is Risk Management: But is Your Password really Secure? »

The Key to Passwords is Risk Management: But is Your Password really Secure?

The Government Computer News Website (gcn.com) recently carried an article by its senior writer and author of the CyberEye column, Mr. William...

May 31 2010 / No comment / Read More »
Authorizations & Access Control

Transparency Gone Too Far: Remediate Authorization Issues »

Transparency Gone Too Far: Remediate Authorization Issues

All of the mentioned authorization issues can be easily remediated by conducting regular security reviews. Ignoring these issues or not attending to them on a regular basis can result in serious vulnerabilities. Before SAP’s launch of their GRC tools, SAP Security Administrators used only a couple...

Mar 2 2010 / No comment / Read More »

The Cost of Typical SAP Authorization Risks »

The Cost of Typical SAP Authorization Risks

SAP ERP systems are the core of many medium and large businesses these days. These systems administer Finance, Payroll, Customer Relationship Management, Human Resources and so on. Control of these systems is handled by a concept called SAP Authorizations (also referred to as authorizations or...

Feb 20 2010 / No comment / Read More »

Enterprise Role Management: Lost in the technical trap? »

Enterprise Role Management: Lost in the technical trap?

What exactly is Enterprise Role Management? It is a conceptual extension of the original RBAC model beyond a single system to a cross-system enterprise-level RBAC approach. Unfortunately, because of marketing issues everybody understands something different under Enterprise Role Management. For the sake of simplicity we...

Feb 10 2010 / No comment / Read More »
Data Protection

Protecting Digital Assets with FDE »

Protecting Digital Assets with FDE Our business environment becomes more mobile by the day: globalization has resulted in more travel, shared work spaces, and virtual home offices. Increasingly, companies are...

Feb 10 2010 / No comment / Read More »
Advertisement
Encryption Data-In-Transit Encryption for SAP®

Data-In-Transit Encryption for SAP®

In a typical SAP environment data transferred between SAP client software (i.e. SAP GUI, BEx…) and the application servers is unencrypted. The same applies for data transferred between SAP application servers. To encrypt server...

Jan 26, 2010 / More »
System Security Is Insecure ABAP Code Overflowing Your System?

Is Insecure ABAP Code Overflowing Your System?

Software breaks. That is inescapable. But intent is important also. Are the bugs in your software there by accident or by design? Ultimately, with regard to development, it comes down to trust. All...

Mar 5, 2010 / More »
IdM Understanding and Planning for SAP NetWeaver Identity Management

Understanding and Planning for SAP NetWeaver Identity Management

SAP’s NetWeaver Identity Management is a flexible tool for handling role management, provisioning and deprovisioning throughout the enterprise. Understanding the concepts and elements of a complete SAP Identity Management solution should be the...

Mar 10, 2010 / More »
IAM Identity & Access Management Strategy

Identity & Access Management Strategy

Identity & Access Management (IAM) is involved in the identification, implementation, administration and termination of identities with access to information systems, buildings and data within an organization. Identities, for example, are company employees,...

Feb 10, 2010 / More »
Authentication Active Directory Authentication for SAP®

Active Directory Authentication for SAP®

Can the challenge of synchronizing passwords between Active Directory and SAP be overcome? SAP users within a large enterprise tend to login to their local machines using their system credentials, which are in turn...

Feb 26, 2010 / More »
Legal Compliance Textbook Security: Cost-Effective PCI DSS Compliance

Textbook Security: Cost-Effective PCI DSS Compliance

PCI DSS (Payment Card Industry Data Security Standard) compliance is an urgent topic for many companies that process card payments. Most technology discussions around PCI DSS compliance focus on web applications, because these...

Feb 20, 2010 / More »
Paulus on Security The risk of re-using software components

The risk of re-using software components

Just a few days ago, Microsoft had to admit serious security issues in almost all of its web-enabled products, not only in the browser, but also in e-mail and other productivity applications. The...

Jan 28, 2010 / More »
GRC Governance, Risk and Compliance – The bigger picture

Governance, Risk and Compliance – The bigger picture

This post is a slight adaptation of an old post of mine on the BPX Community of SAP on the 2nd of May of 2007. Almost years have passed by, but most companies...

Jan 28, 2010 / More »
Advertisement

Search Archive

Search by Date
Search by Category
Search with Google
Log in / Advanced NewsPaper by Gabfire Themes