-
What is federated identity management?
A SearchSecurity.com member asks, "What is federated identity management?" Resident identity management and access control expert Joel Dubin tackles this question in this Ask the Expert Q&A.
-
Risk-based authentication vs. static authentication
How does risk-based authentication methods differ from static authentication methods? SearchSecurity's resident identity management and access control expert tackles this question in this Ask the E...
-
What steps are involved in assessing risk?
In this identity management and access control Ask the Expert Q&A, SearchSecurity's resident expert reviews the processes involved when conducting a risk assessment.
-
Can you manage smartphones and Pocket PC phones using Windows Group Policy?
Learn how to manage this risk smartphones and other like mobile devices introduce into your network, in this network security Ask the Expert Q&A.
-
Will wireless carriers adopt a device security philosophy?
With the proliferation of wireless devices, some security pros wonder if wireless carriers will provide device security solutions. SearchSecurity's network security expert Mike Chapples tackles th...
-
Can Snort read multi-platform syslogs?
Most security pros are aware of Snort's network intrusion detection capabilities, but can this freeware tool read and monitor multi-platform syslogs? SearchSecurity's network security expert Mike C...
-
Evaluating the costs associated with securing, supporting and maintaining a VPN
In need of a new VPN? Learn what to consider before you sit down with management or network admins to discuss the associated costs of a VPN.
-
Password-protecting removable media devices
Safeguard your removable devices. Learn if any products can password-protect the entire device without requiring that the individual connections are encrypted, in this identity management and acc...
-
One-time password tokens: Reliable authentication mechanisms?
Thinking of purchasing a key fob? Read this identity management and access management Ask the Expert Q&A, and learn from our expert as he examines the pros and cons of this authentication tool.
-
How to clean up dormant accounts in Active Directory
Inactive or dormant Active Directory accounts can serve as a gateway for attackers. Learn how to identify and clean up inactive Active Directory accounts in this Identity Management and Access Cont...
-
Are there any patch management products that track the patching process?
Before you dip into your IT budget to solve your patching problems, read this Q&A. Our platform security expert examines why security pros should consider using available freeware products to track...
-
How to create an enterprise-wide portal policy
Implementing a portal policy can protect an organization from legal woes. Learn the standards and guidelines to create an effective enterprise-wide portal policy.
-
How to protect against port scans
A port scan is a popular hacking tool that allows attackers to gather information about how your network operates. Learn how to detect and prevent a port scan in this platform security Ask the Exp...
-
How to perform an email scan to protect against viruses
Scanning your email for viruses before it reaches your Exchange Server can prevent the spread of viruses. In this applicaton security Ask the Expert Q&A, SearchSecurity's resident expert explains h...
-
Use SHA to encrypt sensitive data
Complying with the PCI Data Security Standard is now on the forefront of many security practitioner's minds. Learn how using the Secure Hashing Algorithm can help you encrypt sensitive data and hel...
-
How to properly protect and retain data
Improperly securing, and storing, data can lead to a plethora of problems, including productivity degradation and non-compliance. Learn how to properly protect, and retain your corporate data in th...
-
How to protect personal data
Regulations like HIPAA, GLBA and California SB 1386 have made protecting personal data much more of a priority for the security industry. Learn tools and tactics to protect your personal data in th...
-
How to manage user permissions
Managing multiple user permissions can be a daunting task. Learn best practices for managing these permissions including servicing account passwords, granting local admin access, permissions for fi...
-
The pros and cons of PKI and two-factor authentication methods
There are myriad authentication methods to choose from today; learn the pros and cons of two such methods, Public Key Infrastructures and two-factor authentication systems, and how each system help...
-
Are smart cards tamper-proof?
While choosing to use smart cards to authenticate users may seem like the smart move, know that they are not tamper-proof. Discover what industry standards are available to protect your organizatio...
-
How to utilize free spam-filtering services for SMBs
Learn how a Web-based free spam-filtering service can secure email and prevent spam from attacking your enterprise.
-
Creating employee privacy policies
Are your employees aware of their workplace privacy rights? More specifically, are they aware of what privacy rights they don't retain? Learn how t...
-
Have vendors secretly placed rootkits on USB thumb d...
You can get rootkits from malicious Web sites and emails, but what about reputable vendors? Application security expert Michael Cobb explains how s...