Identity Management
News
Standards could turn social networks into trusted ID brokers: NetIQ
Adoption of identity and access management (IAM) standards may see social-network giants like Facebook and LinkedIn emerge as trusted identity brokers for everything from government transactions to financial services, a security expert has predicted.
Five steps to mastering identity and access management
As the workforce becomes increasingly mobile and dispersed, identity and access management becomes more important in ensuring organisational security. While managing user identities and controlling access are separate tasks, they are closely related.
Australia crawls towards its answer to identity fraud
The Australian Government's electronic answer to the nation's $1 billion identity theft problem -- the Document Verification Service (DVS) -- has processed 200,000 verifications, according to the Attorney General's Department (AGD).
Don't let your data suffer from Miss Taken Identity
Whether you celebrated National Identity Fraud Awareness Week (NIFAW) with a large identity cake or just shrieked 'Who Are You?' and other identity-inspired songs with friends over a beer or four, the campaign has run its course for another year -– and reminded those who were listening that we're still living in a world of trusting, naïve fools.
10 identity management metrics that matter
Within the IT security community, identity- and access-management (IAM) initiatives are considered high value, but are notoriously problematic to deploy. Yet despite IAM's complexity, it represents 30 percent or more of the total information security budget of most large institutions, according to IDC (a sister company to CSO's publisher).
Slideshows
Features
It Wasn’t Me, It Was Bennett Arron
So, Identity Theft. What is it really? Well, I’m glad you asked. It’s basically when your personal details are used fraudulently to open accounts or obtain documentation in your name. This could result in debts being accumulated, for which you would initially be accountable – until you prove yourself innocent.
Novell, CA push to secure identity, security in cloud
Two major identity management companies are forging ahead with products designed to satisfy what a cloud-computing consortium calls one of the trickiest problems preventing secure and automated connections between internal IT infrastructures and external service providers: identity and authentication.
AFP hits $6 million identity fraud syndicate
The Australian Federal Police (AFP) claims to have struck a major blow to a multi-million identity fraud syndicate.
Free Tools to Send Anonymous Messages
Whether it is for an investigation, a whistle-blower statement, a prank or just extreme paranoia, you may have a need for anonymously sending messages. The following five tools provide an easy to use way to communicate incognito with Internet surfing, emails, phone calls and text messages. While these tools have their limitations, they do provide an Investigator a great way to hide his identity, gather intelligence, and communicate secretly when needed.
Social Engineering: The Fine Art of BS, Face to Face
Chris Nickerson is willing to push it about as far as a person can go when it comes to security assessments. The founder of Lares, a security consultancy in Colorado, Nickerson conducts what he calls "Red Team Assessments" for clients. He is paid to try and dupe a client, and the client's employees, to give them a clear picture of the weak spots in their security plan. He then advises them on how to shore up defenses more effectively in the event a real criminal comes knocking.
Opinions
Opinion: How safe is your customer identity data?
Some of the world’s largest corporations have recently fallen victim to hacking attacks and identify data theft, while other online businesses have been compromised and sidelined for days or weeks, losing millions of dollars in revenue and suffering significant reputational damage. It’s never been more important for companies to act in order to avoid becoming the next victim of identity data theft.
Vendor View: Where's the risk in a recession?
A financial crisis is not the time for organisations to become lax about the value of their information security assets.
Good security in recessionary times
If you've had any money in the stock market, it's been a bloodbath the last few weeks. It's hard to remember that any 10-year period in stock market history has always ended up with better returns than any other investment. As financial analysts argue over whether we are already in or just headed into a deep global recession, we are facing a rough, contracting period. People with good jobs are holding on to them tighter than ever.
Five lessons learned about computer security
Reformed hacker-turned-security-consultant Kevin Mitnick served five years in federal prison for breaking into phone and software company networks. He talks about his past hacking exploits, computer security, and how he turned an illegal hobby into a useful career.
Deploying NAC: Challenges and alternatives
What are some of the challenges in deploying NAC? What are the alternatives for LAN security?
- 1
Security a key factor in LogMeIn’s Internet of Things platform
- 2
Virtual desktops win the security case for Brisbane lawyers
- 3
The new IAM: nailing shut the door on the Trojan horse
- 4
Login to the real world with your Facebook account
- 5
Despite $1.46b furphy, 2013-14 Budget offers slim pickings for cyber security
-
Splunk Named a Leader in Gartner Magic Quadrant for SIEM
-
Dell Sets Sights on Cisco, Announces Game-Changing NSA Series That Introduces Powerful Next-Gen Firewall Advances for Mid-sized Businesses and Distributed Enterprises
-
Silver Peak saves Riverbed customers up to 86 per cent with software upgrade program
-
Ovum analysis ranks Orange Business Services ahead of APAC competition for service capability and strategy
-
2013 Brightcove Innovation Award Winners Announced at PLAY 2013 Global Customer Conference
- FTSenior Python DeveloperNSW
- FTLead Software EngineerSA
- FTTest Manager - IMMEDIATE STARTNSW
- FTSenior Python DeveloperNSW
- FTSenior Python Web Applications DeveloperNSW
- FTSenior E-Commerce PHP Developer- North Sydney- E-commerce Software $110kNSW
- FTTechnical Account Manager - MSP + CloudVIC
- FTTest Analyst (MS Environment) .netNSW
- FTOS Web Applications DeveloperNSW
- FTTest EngineerVIC
- FTSenior Field Engineer - MSNSW
- FTWeb Developer- Drupal and PHP. Exciting new position- #2 in Dev team.$100k+SuperNSW
- FTSnr Web Developer PHP/Magento/API integration into E-commerce sites. $100k+SuperNSW
- FT.NET - Sitecore Developer - Melbourne - PermNSW
- FTQuality ManagerSA
- FTTest Analyst (MS Environment) .netNSW
- FTR&D EngineerSA
- FTSenior Projects EngineerNSW
Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).
- Have an incident response plan.
- Pre-define your incident response team
- Define your approach: watch and learn or contain and recover.
- Pre-distribute call cards.
- Forensic and incident response data capture.
- Get your users on-side.
- Know how to report crimes and engage law enforcement.
- Practice makes perfect.
Warning: Tips for secure mobile holiday shopping
I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.










