Security News

Passing a compliance audit in the cloud doesn’t have to be hard
2021-03-11 05:30

Your company takes compliance and security very seriously, but you've no idea what or how to layer on top of AWS's existing security and compliance protocols to achieve levels necessary for compliance certification. In this case and others, passing a compliance audit may prove particularly problematic even though your company is committed to performing at or above baseline legal requirements.

Onapsis Platform for SAP SuccessFactors ensures security and compliance in the intelligent enterprise
2021-03-04 00:30

Onapsis announced the general availability of support for SAP SuccessFactors in The Onapsis Platform. "SaaS applications such as SuccessFactors can introduce new risk into the business-critical application environment if security parameters are not continuously assessed to maintain a strong security posture," said Marty Ray, Chief Information Security Officer at Fossil Group.

Very Good Security helps organizations achieve SOC 2 compliance with VGS Control
2021-02-28 23:45

Very Good Security has further cemented its commitment to securing the world's information by empowering organizations to prepare for their first SOC 2 audits completely free with VGS Control. VGS employs a fundamentally different approach to data security and compliance, which drastically improves an organization's ability to seek and maintain SOC 2 compliance using VGS Control.

PlusOne Solutions API ensures a whole view of the network’s compliance and risk information
2021-02-24 02:00

PlusOne Solutions launched its open Application Programming Interface for Customers looking to create a unified method for managing their Service Network compliance data and compliance programs. The PlusOne Solutions API allows for the communication of multi-layered compliance information including Contractor, sub-contractor, and contractor employee levels to ensure a full view of the network's compliance and risk information.

Chief Legal Officers face mounting compliance, privacy and cybersecurity obligations
2021-02-23 06:30

Thirteen years, one institutional investor and two acquisitions later, it offers a unified platform that helps general counsel and chief legal officers manage challenges related to e-discovery, data privacy compliance obligations, Data Subject Access Rights, digital forensic investigation and so on. Legal plays a critical role in ensuring that all compliance obligations are met, and overall risk to the organization is mitigated.

VigiTrust VigiOne now enables users to conduct full risk assessments before managing compliance
2021-02-18 01:45

VigiTrust launched new Asset Register, Risk Register and Dynamic Assessment features on its flagship platform, VigiOne. The platform now expands its reach to cover the steps before compliance management: namely, answering the questions, "What are the risks my organization faces, and what can I do about those risks?" to help create a Continuous Compliance Program.

Belkin unveils Secure KVMs portfolio designed for NIAP protection Profile 4.0 compliance
2021-02-16 02:30

Belkin announces an entirely new portfolio of Secure KVMs designed for National Information Assurance Partnership Protection Profile 4.0 compliance. Belkin's portfolio consists of the Universal 2nd Generation Secure KVMs as well as the Modular Series of Secure KVMs. Combined, the two platforms give government agencies an unprecedented level of flexibility in designing their environments and equipping employees with the exact value and functionality needed for the mission.

Top 5 reasons not to use fear to encourage security compliance
2021-02-08 22:06

Security is important in any organization, but getting employees to follow protocol can be a challenge. Oh, these people who are using insecure passwords, clicking open phishing emails and installing malicious apps-why don't they understand? We'll show them, right? If you don't follow the security protocols, you're in for it.

Why you shouldn't use fear to encourage security compliance: 5 reasons
2021-02-08 22:03

Security is important in any organization, but getting employees to follow protocol can be a challenge. Tom Merritt offers five reasons why using fear-based motivation techniques is not ideal.

CyberSheath ensures compliance with new cybersecurity standards for defense contractors
2021-02-04 02:30

CyberSheath launched its Managed IT Services for Defense Contractors to ensure compliance with the new cybersecurity standards for commercial contractors of the United States government. The managed services include a Shared Security Compliance Framework to ensure compliance for both DFARS Clause 252.204-7012 / NIST SP 800-171 and the new DFARS 252.204-7019-7021 CMMC requirements.