Security News

How continuous security monitoring is changing the compliance game
2023-05-22 04:00

Managing compliance doesn't have to be draining, time-consuming, or overly complicated. In this Help Net Security video, Wesley Van Zyl, Senior Manager, Compliance Success at Scytale, discusses how keeping track of all your security controls can be challenging, particularly when new cybersecurity threats emerge unexpectedly.

Compliance automation to confound cyber criminals
2023-05-16 14:03

For companies today, the need to maintain and enhance levels of audit and compliance against the backdrop of an ever-worsening cyber security threat landscape has become more pressing than ever before. Security and compliance breaches can cause operational disruption, lost revenue, customer dissatisfaction, and lead to potentially catastrophic legal or regulatory actions, according to a new white paper published by compliance automation specialist Drata.

eBook: Security Compliance for CISOs
2023-04-27 02:50

Security compliance often feels like the ever-present task that looms over every angle of your role as Chief Information Security Officer. Regardless of the hours spent managing it, something can always slip through the cracks.

How CISOs navigate security and compliance in a multi-cloud world
2023-04-24 04:00

Due to the increasing importance of multi-cloud and the intricate nature of cloud infrastructure, obtaining a comprehensive understanding of the various cloud workloads operating within your system, and ensuring their security, can be challenging. In this Help Net Security video, Kaus Phaltankar, CEO at Caveonix discusses how in today's complex multi-cloud landscape, the role of CISOs is more crucial than ever.

Storage security toughen-up for compliance and cyberwar in 2023
2023-02-15 12:23

It's a challenge for IT security chiefs because unstructured data's decentralized nature makes it harder to maintain effective and consistent security controls that govern access to it. "Concepts of best practice in data storage have evolved rapidly since the SolarWinds hack," says Kevin Noreen, Senior Product Manager - Unstructured Data Storage Security at Dell Technologies.

Learn the art of malicious compliance: doing exactly what you were asked, even when it's wrong
2023-02-13 08:28

Now, as for the job itself, Steve was in the "Salesman support/office/data processing section." The computer system in use at the time was an IBM system 3, with tub files of 96-hole punch cards for sales order processing, inventory management, and reporting. Steve tells us "The punch cards were kept with the sales orders until order completion/delivery, or pickup, with some orders awaiting on-order inventory for later pickup."

As regulations skyrocket, is compliance even possible anymore?
2023-02-13 05:00

Let's face it, security teams are only as good as the next problem they face. Why is keeping up so difficult? New/evolving requirements, lengthy/confusing acronyms, and countless moving parts plague compliance regulations.

The future of vulnerability management and patch compliance
2023-02-01 04:38

IT departments continue to face immense pressure to get vulnerability and patch management right as threat actors use new and old methods to exploit network endpoints. Are we ready for what's next? As vulnerabilities continue to increase, what strategies should security professionals use to gain visibility into these threats, prioritize them, and manage the ongoing risk to endpoints? What will the vulnerability landscape look like in 2023, and what new challenges will security and IT teams face?

Using the Wazuh SIEM and XDR platform to meet PCI DSS compliance
2023-01-31 15:05

An example of a solution that helps meet PCI DSS compliance requirements is Wazuh. Wazuh helps implement PCI DSS compliance by performing log analysis, file integrity checking, configuration assessment, intrusion detection, real-time alerting, and automated response to threats.

Guide: How MSSPs and vCISOs can extend their services into compliance readiness without increasing cost
2023-01-18 10:32

Compliance services are emerging as one of the hottest areas of cybersecurity. This is a major opportunity for providers of virtual CISO services assuming they can broaden their offerings to encompass compliance.