HackingStopped

Discover what hackers know that you do not

Information Security


Security

St. Bernard Software, Inc. announced the launch of its industry-first Hybrid security solution, iPrism Instant Messaging (IM) Filter, the first IM filtering solution delivered on a Hybrid platform that integrates on-premises appliance and on-demand services. www.stbernard.com

Archiving and Compliance

The Novell-led Bandit project announced a solution to help address one of the major business challenges faced by hotel and hospitality enterprises on how to cost effectively connect disparate systems to streamline administration and comply with regulatory requirements. www.novell.com

OpenTech Systems, Inc., unveiled DR/Xpert for DB2 at Share's Spring 2008 Technology Conference. DR/Xpert for DB2 automatically audits, backs up and recovers DB2 table spaces eliminating the need to manually create and maintain DB2 image copy and recovery JCL. www.opentechsystems.com

Unified Communications

Cisco CapitalSM launched per-user-per-day pricing that makes it easy for North American channel partners to offer their small to medium-sized business (SMB) customers financing for Cisco Unified Communications systems for roughly the equivalent of a daily newspaper. www.cisco.com

Wireless

Momail’s leading mobile email service is now available in local language in Poland . In less than two minutes, customers can set up a Momail account via their mobile or pc to have a mobile email solution on their handsets which is as easy as SMS to use. www.momail.com

Miscellaneous

Google introduced Google Sites, an application that makes creating a team web site as easy as editing a document. www.google.com

Hostway Corporation is among the first Web hosts to offer the new Microsoft Windows Server 2008, the most advanced Windows operating system. www.hostway.com

Microsoft Corp. and Cisco announced that they intend to work together to offer Windows Server 2008 with Cisco WAN optimization in a solution for branch office environments. Cisco will embed a virtualization component within its Wide Area Application Services (WAAS) appliance family that will help customers to host Windows Server 2008 services within their existing network infrastructure for branch offices. www.cisco.com

Cisco introduced the Cisco QuantumFlow Processor, the most advanced piece of networking silicon in the world and the industry's first fully integrated and programmable networking chipset. More than half a decade in the making, the Cisco QuantumFlow Processor consists of 40 cores on a single chip and can perform up to 160 simultaneous processes, making it uniquely geared for today's network environments and several generations beyond what is currently available in network processors. www.cisco.com

HP introduced an easy-to-manage virtual storage disk array designed specifically for midsize customers who need to reduce the costs and complexity of implementing a storage-area network (SAN). The HP StorageWorks 4400 Enterprise Virtual Array (EVA4400) offers a combination of high-performance and availability features, virtualization capabilities and advanced provisioning software that makes it ideal for midsize businesses that want to cost-effectively manage large amounts of data in a SAN environment without investing in deep storage experience. www.hp.com

VMware and HP announced VMware’s ultra-thin hypervisor software, VMware ESX 3i, is expected to be broadly integrated and available beginning March 31, 2008, on 10 models of HP ProLiant servers. The joint offering helps customers adopt virtualization with greater speed and simplicity. www.hp.com

IBM Researchers unveiled a prototype technology that could bring massive amounts of bandwidth in an energy efficient way to all kinds of machines -- from supercomputers to cell phones -- that could revolutionize the way people access, use and share information across many different applications. www.ibm.com

IBM announced the System z10 mainframe to help clients create a new enterprise data center. The system z10 is designed from the ground up to help dramatically increase data center efficiency by significantly improving performance and reducing power, cooling costs, and floor space requirements. www.ibm.com

Kicking off more than 225 events around the world and joined by more than 4,000 customers and partners, Microsoft Corp.’s Chief Executive Officer Steve Ballmer showcased the next generation of infrastructure and application platform products, including Windows Server 2008, Microsoft Visual Studio 2008 and Microsoft SQL Server 2008. www.microsoft.com

Hundreds of independent software vendors (ISVs) including BEA Systems Inc., CA, Citrix Systems Inc., Epicor Software Corp., Quest Software Inc. and Symantec Corp., are demonstrating overwhelming support for the Windows Server 2008 operating system in anticipation of the largest enterprise and developer platform launch in Microsoft Corp.’s history, encompassing the release of Windows Server 2008, Microsoft Visual Studio 2008 and Microsoft SQL Server 2008. www.microsoft.com

Novell announced the availability of SUSE(R) Linux Enterprise Point of Service, the latest version of Novell's Linux solution optimized for retail computing environments. SUSE Linux Enterprise Point of Service allows retailers to customize and manage point of service (POS) systems, reducing their in-store and data center costs while increasing system flexibility and reliability. www.novell.com

Novell announced it has entered into a definitive agreement to acquire PlateSpin Ltd. This acquisition will extend Novell's leadership position in the next-generation data center by providing the only solution to dynamically deliver business critical services across both physical and virtual infrastructures. www.novell.com

Siemon announced the release of their new 2008 North American Network Cabling Solutions catalog. Available at no cost, the catalog arranges Siemon products into their appropriate systems to simplify the process of selecting an end-to-end cabling infrastructure. www.siemon.com



 
:
:

GET FREE SECURITY TIPS



Evaluating Security

The exact role of internal audit regarding information security varies widely among companies, but it always provides a significant opportunity for internal audit to deliver real value to the board and management. Internal auditors should play an important role in ensuring that information security efforts have a positive effect on an organization and protect the organization from harm.

Why worry so much about information security? Consider some reasons why organizations need to protect their information:
  • Availability. Can your organization ensure prompt access to information or systems to authorized users? Do you know if your critical information is regularly backed-up and can be easily restored?
  • Integrity of data and systems. Are your board and audit committee confident they can rest assured that this information has not been altered in an unauthorized manner and that systems are free from unauthorized manipulation that could compromise reliability?
  • Confidentiality of data. Can you tell your customers and employees that their nonpublic information is safe from unauthorized access, disclosure, or use? This is a significant reputational risk today!
  • Accountability. If information has been compromised, can you trace actions to their source?
An audit of information security can take many forms. At its simplest, the auditors will review the information security program's plans, policies, procedures, and key new initiatives, plus hold some interviews with the key stakeholders. At its most complex, a large internal audit team will evaluate almost every aspect of the security program and even do intrusion testing. This diversity depends on the risks involved, the assurance requirements of the board and executive management, and the skills and abilities of the auditors. For example, if the organization is undergoing extensive change within its IT application portfolio or IT infrastructure, that would be a great time for a comprehensive assessment of the overall information security program (likely best just before or just after the changes). If last year's security audit was positive, perhaps a specialized audit of a particular activity or an important e-commerce application would be useful. The audit evaluation can, and most times should, be part of a long-term (read: multi-year) audit assessment of security results.




 
Web Hosting Companies