Cloud Security

News

Virtual desktops win the security case for Brisbane lawyers

By David Braue | 17 May, 2013 10:17

It may have started out as a way of simplifying an increasingly complicated IT environment, but Brisbane law firm Cooper Grace Ward (CGW) has found its virtual desktop infrastructure (VDI) investment is also delivering improved remote-access security, data protection and integrity of sensitive information.

The new IAM: nailing shut the door on the Trojan horse

By David Braue | 15 May, 2013 13:55

Cloud, mobility and bring-your-own-device (BYOD) computing are providing so many new potential ingress points to your network that it’s getting near impossible to keep up. The solution, as David Braue finds, lies in reconsidering your exposure, revisiting your IAM strategy – and picking your battles carefully.

Mobile carriers a new line of defence against mobile malware

By David Braue | 02 May, 2013 17:29

Mobile telecommunications carriers like Vodafone will increasingly play a role in normalising bring your own device (BYOD) programs by using deep packet inspection (DPI) technology to prevent the compromise and exploitation of mobile devices outside the corporate network, the head of security supplier BAE Systems Detica has predicted.

“Fundamentally broken” mobile security makes BYOD too risky, expert warns

By David Braue | 24 April, 2013 17:15

The “fundamentally broken” security model of Google’s Android operating system makes bring your own device (BYOD) strategies too risky for companies to implement safely, a senior security researcher with Romanian security vendor Bitdefender has warned.

Security nous driving Verizon’s cloud data centre push

By David Braue | 18 April, 2013 09:02

Australian organisations’ growing comfort with the security of hosted cloud services is paving the way for increased investment in local data centre space and new approaches to cloud-related infrastructure models as Verizon, Rackspace and others push new facilities into an ever-busier market.

Reviews

Trend Micro SafeSync online data backup service (50GB)

By Elias Plastiras | 29 June, 2011 16:05

Trend Micro's SafeSync is an Internet-based storage solution that allows you to upload files and access them from any computer or smartphone (iPhone or Android). It's a very similar service to DropBox, but it offers better value for money.

Slideshows

Canberra's EVOLVE.Cloud hit the streets with topline speakers

By CSO staff | 29 October, 2012 10:19

Canberra's EVOLVE.Cloud hit the streets with topline speakers

Evolve.Cloud hits Sydney with a bang

By CSO staff | 01 May, 2012 14:33

Evolve.Cloud event hosted by Trend Micro including thought leaders from , VMware, Cloud Security Alliance, Government Leaders and Cloud Independent Rob Livingstone at The Sheraton on the Park.

Symantec Vision 2011 Sydney in pictures

By Neerav Bhatt | 13 September, 2011 18:56

Symantec Vision 2011 Sydney in pictures

Features

NEWS FOCUS: Cyber-espionage attacks threaten corporate data in new unrelenting ways

By Ellen Messmer | 08 August, 2011 20:26

Stealthy, sometime long-term cyber-espionage attacks to steal sensitive proprietary information -- what some now call "advanced persistent threats" (APT) -- have become a top worry for businesses.

Cloud security: how to protect your data

By CSO staff | 14 June, 2011 21:17

To use Cloud computing securely requires companies to know where their data is stored and who has access to it. Ironically, the reason Cloud is so popular is because organisations don't want to worry about these details.

So can the issue be solved by adhering to standards? Increasing legislation? Maybe we need a global technical disaster to ‘sober up’ an industry drunk on the power of Moore's Law.

Opinions

Establishing a Cloud Broker Model – Part 1

By Puneet Kukreja | 15 March, 2013 16:34 | 1 Comment

Information Security, IT Security, Technology Security, IT Risk and Security and IT Risk Services are all names that organisations use to define a functional unit within their enterprise that is responsible for the security, integrity and operational assurance of their information assets and operating environment.

Three Facts of Data Security Legislation for the Cloud

By Puneet Kukreja | 19 December, 2012 12:49

Over the last 2-3 years cloud computing has promised, and in many instances delivered, a lower total cost of ownership. This has helped organisations return the focus of operation to their core activities—reducing the effort spent on managing IT infrastructure and applications.

The Industrialisation of Hacking

By Chris Wood | 26 October, 2012 16:02

The Industrial Revolution transformed four key aspects of society—innovation, transportation, communication and financial markets—changing the world forever. Although it began more than 200 years ago, there are surprising some parallels between this historically transformative period and IT security. The dynamics of the threat landscape and the increasing complexity of IT environments have given rise to a new era: The ‘Industrialisation of Hacking’.

Think cloud – think strategy – think "Sun Tzu"

By Puneet Kukreja | 31 August, 2012 12:29 | 2 Comments

The steady rise of cloud over the last few years across the software, infrastructure and platform domains has forced most technology business leaders to stop and take note. The voracity with which the perceived value and adoption of cloud computing and cloud Services has grown should be viewed and actioned as a strategic initiative and not a tactical undertaking with short term goals and limited benefits. To move things along and provide context I turn to Sun Tzu's "The Art of War", that helps identify strategy elements required by executives and senior management grappling with the challenge of cloud.

Cloud governance – manage the cloud challenge

By Puneet Kukreja | 30 April, 2012 14:16

The word governance derives from the Greek verb κυβερνάω [kubernáo], which means to steer, and was used for the first time in a metaphorical sense by Plato (according to Wikipedia). Wikipedia further expands on the term, rightly calling it “the act of governing”. Governance relates to decisions that define expectations, grant power, or verify performance.

CSO Corporate Partners
  • Webroot
  • Trend Micro
  • NetIQ
rhs_login_lockGet exclusive access to CSO, invitation only events, reports & analysis.
CSO Directory

NetIQ iSeries Security

The NetIQ iSeries Security Solutions helps you eliminate security risks and maintain business continuity

Security Awareness Tip

Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).


  1. Have an incident response plan.

  2. Pre-define your incident response team 

  3. Define your approach: watch and learn or contain and recover.

  4. Pre-distribute call cards.

  5. Forensic and incident response data capture.

  6. Get your users on-side.

  7. Know how to report crimes and engage law enforcement. 

  8. Practice makes perfect.

For the full breakdown on this article

Security ABC Guides

Warning: Tips for secure mobile holiday shopping

I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.