VIDEO -
Learn how the requirements from various regulations like HIPAA, state privacy laws, and PCI DSS drive the use of role management technology to enable compliance. In this video, Richard Mackey summarizes the technological components that support compliance-focused role management and recommends a strategy for integrating IAM into the enterprise.
Posted: November 20, 2009 | Premiered: November 20, 2009
PODCAST -
When an organization commits to implementing the technologies and tools to support role and entitlement management, it faces a number of sizable challenges. In this podcast, expert Richard Mackey counts down these organizational, process, and technical challenges that block the successful deployment of role and entitlement management technology.
Posted: November 20, 2009 | Premiered: November 20, 2009
WHITE PAPER -
This paper, designed for security and compliance professionals, illustrates how to achieve compliance on three of the most costly and complex sections: requirements 3, 6, and 10 of PCI DSS. This paper also highlights how Web application and database appliances can deliver resource effective compliance while maintaining cost efficiency.
Posted: November 12, 2009 | Published: July 12, 2009
ANALYST REPORT -
The findings of this survey suggest that despite PCI DSS regulation companies are still struggling with data security. However, it also suggests that companies that take a strategic approach to PCI compliance go through fewer data breaches. Learn more about leveraging PCI to get a broader, more effective, and more cost efficient security program.
Posted: November 12, 2009 | Published: September 24, 2009
PODCAST -
Web Application Security Podcast featuring Paul Kaspian. This PodCast touches on how to meet application security compliance deadlines.
Posted: November 10, 2009 | Premiered: November 10, 2009
RESOURCE CENTER -
Check out this e-Kit for comprehensive information related to web application security strategies and web application security testing through SaaS. Included are several white papers, demos, and podcasts.
Posted: November 3, 2009 | Published: November 3, 2009
WHITE PAPER -
IBM has created a pair of complementary views to bridge the communication gap between the business and the technical perspectives of security to enable convergence in thought and process. The IBM Security Framework addresses the business view, and the IBM Security Blueprint addresses the technical view.
Posted: October 28, 2009 | Published: July 22, 2009
WHITE PAPER -
Organizations should consider a thorough approach to IAM governance that meets the requirements of discovering, documenting and analyzing user access; establishing a process for user access governance; ensuring that constraints help manage business conflict; enforcing policies; and continuous monitoring.
Posted: October 27, 2009 | Published: June 11, 2009
WHITE PAPER -
Compliance with PCI DSS has become a global requirement for any business or entity that processes credit card transactions as payment for goods and services. This paper explores the ROI implications and opportunities of PCI.
Posted: October 27, 2009 | Published: June 10, 2009
PRESENTATION -
This collection of slides from the Diana Kelley presents an overview of software security best practices. There is a heavy emphasis on PCI DSS requirement 6 -- Develop and maintain secure systems and applications. Some important subsections are highlighted and explained in detail.
Posted: October 26, 2009 | Published: October 26, 2009
PRESENTATION -
This collection of slides from Diana Kelley and Ed Moyle presents an overview of PCI DSS requirements 7 through 12. Check it to learn about the second half of PCI DSS, learn what each one means, and how it will be effected by version 1.2 of PCI DSS.
Posted: October 26, 2009 | Published: October 26, 2009
PRESENTATION -
This collection of slides from Diana Kelley and Ed Moyle presents an overview of PCI DSS requirements 1 through 6. Check it to learn about the first six PCI DSS requirements, what each one means, and how it will be effected by version 1.2 of PCI DSS.
Posted: October 26, 2009 | Published: October 26, 2009
PRESENTATION -
This collection of slides from Diana Kelley and Ed Moyle presents an overview of PCI DSS in general and offers some broad, nontechnical advice on how to attain and maintain compliance. Check it out to learn about compliance validation, compliance assessments, and more.
Posted: October 26, 2009 | Published: October 26, 2009
EBOOK -
Compliance with the Payment Card Industry (PCI) Data Security Standard (DSS) is mandatory if your company stores, processes, or transmits payment cardholder data. This book is all about understanding PCI and how merchants can comply with its requirements.
Posted: October 21, 2009 | Published: October 21, 2009
EDITORIAL RESOURCE GUIDE -
In this expert E-Guide, learn about 3 actions to take in your organization that improve security beyond the requirements of PCI compliance. Also discover how examining the flow of data in a new way allows you to communicate risks and issues to executive management, often justifying expenses in critical areas such as security and compliance
Posted: October 12, 2009 | Published: October 12, 2009