--> You can subscribe to the Security Extra Blog via our rss feed or email

Categories

Security Extra


IT security
The future of two-factor authentication
1 Comment  Posted by SecExtra on March 09th, 2008

In response to us wishing to know a bit more about where two-factor authentication systems are heading, Andy Kemshall from SecurEnvoy has kindly bestowed his thoughts upon us. Take it away Andy.
Although not new, when it comes to remote access, two-factor authentication hasn’t always kept pace with consumer demands. Users are no longer restricted to accessing corporate systems from their work PC. Today they can log in from anywhere, on any device, at any time - whether it’s from their home computer, an internet-enabled laptop in an airport, or from their Smartphone.
However, …


If you're new here, you may like our tasty RSS feed. Thanks for visiting!


What is secure printing? [VIDEO]
No Comments  Posted by SecExtra on March 06th, 2008

We have a fun video for you today on printing security and just how important yet simple it is to implement an effective secure printing solution that can protect data at all stages.
In light of recent high profile incidents of data leakage, such as HRMC, secure document management is placed firmly at the top of the corporate agenda. Simple solutions, such as  a print feature, which requires employees to enter a PIN number to retrieve a document from the printer, can significantly help increase document security. Over to Eric…

Do you currently use secure printing …


PCI Compliance is not just a ‘one off’ quick fix
No Comments  Posted by SecExtra on March 06th, 2008

The landscape of the retail industry is changing.  Until recently, distribution was the sector’s principal focus. Today however, following a series of major security breaches to personal data, the issue of securing business information has also become key, particularly in the context of corporate reputation and operational excellence. Dr. Anton Chuvakin, Chief Logging Evangelist at LogLogic explained more to us…
PCI DSS (which stands for Payment Card Industry Data Security Standard) compliance, which addresses the protection of cardholder data, is a recent phenomenon with the PCI Standard being launched in 2004.
Prior to this, individual card …


10 Golden Rules of Data Loss Prevention
No Comments  Posted by SecExtra on March 06th, 2008

Frank Schlottke at Applied Security kindly provides us with his top ten tips to avoid embarrassing and potentially damaging data loss.
With so many highly-publicised data losses in the last few months the safety of stored information is now even higher on the corporate agenda – no one wants to suffer the same humiliation as HMRC, DVA or Marks and Spencer.  Losing a large amount of company data, whether it is at the hands of a hacker or because someone lost it accidentally, is highly embarrassing.  Worse than that, if that data contains sensitive information such as personal details on customers, legal …


The dangers of FTP… exposed
No Comments  Posted by SecExtra on March 04th, 2008

FTP is one of the main data transfer systems that we use on a daily basis, though due to its familiar and frequent usage it suffers from a number of issues. We contacted Craig Whitney from Tumbleweed to get his views on the dangers of the File Transfer Protocol.
 
Several classified military and government documents were recently found and accessible to anyone …