Security News

Why do enterprise SOC teams need CIEM now?
2021-02-18 04:00

CIEM is the next generation of solutions for managing entitlements and permissions for all cloud infrastructure identities and resources and enforcing least privilege policies in the cloud. Zero Trust Access is impossible to achieve unless the enterprise can manage and eliminate over-permissioned identities in their cloud infrastructures effectively.

Datadog and Moogsoft integration allows SRE teams to swiftly get to the cause of a service outage
2021-02-18 00:30

Available through the Datadog Marketplace, this new integration enables IT Ops, DevOps, and SRE teams to easily start ingesting events and metrics from Datadog into the Moogsoft Observability Cloud. "Customers rely on Datadog to quickly be alerted on production issues and help them find resolutions," said Ilan Rabinovitch, Vice President of Product and Community at Datadog.

Kaspersky: Goofing off a little at work may help security teams stay focused
2021-02-17 18:40

The security company found that 85% of workers spend up to five hours a week watching YouTube, listening to podcasts, or exercising during work hours. Mixing work and play might be a good thing if it breaks up the monotony of security monitoring, according to Kaspersky.

For SOC teams, the analytics and automation hype is real
2021-02-12 06:30

SOC analytics and automation, including security monitoring and incident management tools, are now mission-critical apps and services that are required to support revenue generation in today's changing business landscape. Let's take a look at why analytics and automation are so vital for modern security teams, the possible downsides, and why a cloud-native platform is the future for the SOC. Three core benefits.

Trend Micro Vision One: Extended XDR to help security teams see more and respond faster
2021-02-10 03:30

The new platform, Trend Micro Vision One, has extended detection and response at its core and raises the bar with new capabilities to help security teams to see more and respond faster. Now, with Vision One, Trend Micro is solving more complex security challenges with enhanced XDR, new risk visibility, new third-party integrations, and simplified response to threats across security layers.

Circa launches AI Candidate Matching to help companies build diverse and high-performing teams
2021-02-10 02:30

Circa is launching AI Candidate Matching, to help companies accelerate their success toward building more diverse, innovative, and high-performing teams. AI Candidate Matching focuses on candidate sourcing and matching that reaches both active and passive candidates.

Endace and Corelight partnership allows SecOps teams to respond with better speed and accuracy
2021-02-10 01:15

Endace announced a strategic partnership with Corelight that will provide security teams with rich insights and detailed forensic data that accelerate the process of detecting, analyzing and responding to network security threats. Corelight sensors produce rich, protocol-specific logs for incident response and threat-hunting workflows within any SIEM. When integrated with EndaceProbe Analytics Platforms these logs include "Pivot-to-Vision" links which connect SIEM events to the related packet data recorded by the EndaceProbes on the network.

Just 2020 things: Miscreants hit remote desktops 700% harder as world's IT teams try to support locked-down staff
2021-02-09 14:26

Online criminals have increasingly targeted Remote Desktop Protocol connections over the past year, according to infosec biz ESET. During calendar 2020, ESET recorded what it said was a 768 per cent increase in attack attempts on RDP, a key Windows feature for remote working, during the course of the year. Roman Kováč, ESET's chief research officer, said in a statement: "RDP security is not to be underestimated especially due to ransomware, which is commonly deployed through RDP exploits, and, with its increasingly aggressive tactics, poses a great risk to both private and public sectors."

Microsoft to alert enterprise security teams when nation-state attackers target their employees
2021-02-09 11:45

Microsoft will introduce this month a new security alert that will notify enterprise security teams when an employee is being targeted by suspected nation-state attackers. " attacks represent some of the most advanced and persistent threat activity Microsoft tracks.

Data loss prevention strategies for long-term remote teams
2021-02-05 06:00

Employees commonly and inadvertently compromise company data through poor password hygiene, accidental data sharing, improper technology use, phishing scams, and more. Some employees will also act maliciously, intentionally stealing company data for profit, retribution, or fun.