Infosecurity Opinions
In Cyberspace, No One Can Hear You Scream
Royal Holloway’s Geraint Price and Keith Martin call for innovative approaches to securing cyberspace that go beyond the current practitioners’ toolkit
Comment: Making the Journey from BYOD to BYOPC
Is the laptop evolving into a tablet, or is the tablet evolving into a PC? As the device landscape blurs, Yorgen Edholm of Accellion urges enterprises to face the new challenges of how content is secured, synchronized and shared on the new generation of mobile devices
Comment: Which CISO Will Lead your Organization to Success?
Choosing the right talent for one of the most challenging jobs in the cyber economy can be a tough job, but what kind of CISO should you be looking to recruit to lead your organization? Amar Singh provides his model CISO for your consideration
Comment: How to Fight Back against Cybercriminals
Jason Hart of SafeNet discusses the ‘secure breach’ concept based on a data-centric security approach, and how this philosophy can be implemented to protect data in the face of hacker exploits
An Overview of E-Mail Protection Systems
Alexander Zatsepin of Protection Technology Research provides a guide to email security technologies and discusses the features you should look for to suit your organization's needs
Comment: Internal Restructuring Can Expose Security Risks
Marc Lee of Courion explores the hidden risks that organizations face when making internal changes and significant job cuts, highlighting the importance of access risk management to prevent them
Comment: Malicious QR Codes Jeopardize Your Security
Now that QR codes are in the mainstream, they are also fast becoming a favorite tool for attackers seeking new infection vectors. That is why education for the QR code end-user is imperative, says Tripwire’s Dwayne Melancon
Comment: Why Hire a Hacker?
Some organizations employ hackers to prevent criminals from hijacking their systems. But many are still afraid to hire a hacker and are not sure what ‘type’ of hacker they should recruit. AlienVault’s Dominique Karg looks at what kind of hacker an organization should employ and what their knowledge can offer in terms of increased security
Comment: A Tiered Approach to BYOD Fulfillment
Enterprise mobility and BYOD policies present new IT challenges and security threats for managing endpoints, safeguarding network resources and protecting sensitive data. ForeScout’s Scott Gordon says there is no one-size-fits-all answer, so a layered security model can and should be applied
Comment: Employ Data-centric Security to Tackle the Insider Threat
Watchful Software’s Charles Foley discusses how data-centric security approaches help keep sensitive information safe from security breaches
Comment: Make Internal and External Threats a Boardroom Priority
Cyber-Ark’s Udi Mokady discusses the threats facing organizations today and considers whether internal or external attacks are a greater risk to modern business
Perimeter Security: In Memoriam
Paul Simmonds submits his obituary for perimeter-based security strategies
Perimeter Security: Evolved, Not Dead
Perimeter security strategies must adapt to today’s realities, but the concept itself is not entirely obsolete, says Scott Gordon
Comment: Avoid the Seven Deadly Sins of Cloud Computing
The benefits of cloud computing services are now well established; however, uncertainty still surrounds several of the inherent risks. The ISF’s Steve Durbin examines what organizations can do to realize the benefits of the cloud, while avoiding the information security bear-traps that exist
Comment: Overcoming a Year of Vulnerability
Mark Dunleavy of Informatica takes a look back at 2012, and explores why it’s being described as a year of vulnerability. We have seen data breaches galore over the past 12 months, so he offers guidance in how to make 2013 the year of data breach prevention
Comment: Contactless Payments – Retailers Must Learn to be More Secure in 2013
Calum MacLeod of Venafi takes a closer look at near-field communications, which many retailers are planning to implement this year, and finds some potential pitfalls in their plans for contactless payments
Comment: Give Security a Voice in the Boardroom
Most organizations depend on IT, making them mortally vulnerable if security is breached. Phil Bindley of The Bunker believes that business consulting skills are the key to giving security a voice in the boardroom
Comment: Audit what’s Going on in your IT Infrastructure…It’s Not Rocket Science
Aidan Simister of NetWrix looks at what organizations need to audit, but too often don’t
Information Security Certifications: Is the CISSP Just a Badge, or Is it More?
John Colley defends the merits of the CISSP exam and warns that it's not as easy as some think
Information Security Certifications: Badges of Dishonor
Gregor Campbell questions whether those who earn their CISSP are truly capable information security professionals, just by virtue of having passed an examination