Risk Management
News
The week in security: Attacks continue; are you ready for 2013?
Are your BYOD-embracing employees decommissioning their old mobile devices to ensure they can't still access your corporate networks?
DSD confirms: application whitelisting is the go
Australia's Defence Signals Directorate (DSD) has joined the increasing number of organisations promoting application whitelisting as a key security strategy with an updated version of its award-winning "Top 35 Mitigation Strategies".
Six tips for developing a security culture
Technology won't save you from nation-state cyber-espionage, your corporate culture will.
Week in security: The future of security is agile
CSO Australia held its first-ever breakfast events in Sydney and Melbourne, with a range of speakers exploring the goals and obstacles in the effort to adopt Agile Security. Sponsor NetIQ said growing trust in social networks – mixed with the right standards – could make them trusted third-party ID brokers where other organisations have failed.
Embedding risk culture
An observation from the global financial crisis is that organisations with a weak risk culture can experience extensive or even catastrophic damage. Significant investment in risk management people, processes and technology is only part of a sound business risk environment. The key component is the risk culture.
Opinions
Nasty Ruby on Rails vulnerabilities highlight small websites' risk to us all
The revelation of serious long-term vulnerabilities in the popular Ruby on Rails web programming framework is just one of three events in the last 72 hours that have convinced me that improvement in web application security is impossible -- unless both developers and business managers seriously lift their game.
- 1
Australian Information Security Association issues blunt warning as National Cyber Security Awareness Week begins
- 2
Bank trojan targets users of Bitcoin exchange Mt Gox
- 3
Security a key factor in LogMeIn’s Internet of Things platform
- 4
Big Data Investigations: Opportunity and Risk
- 5
Virtual desktops win the security case for Brisbane lawyers
-
Lan 1 meets demand for cloud security with Authentication-as-a-Service
-
Splunk Named a Leader in Gartner Magic Quadrant for SIEM
-
Dell Sets Sights on Cisco, Announces Game-Changing NSA Series That Introduces Powerful Next-Gen Firewall Advances for Mid-sized Businesses and Distributed Enterprises
-
Silver Peak saves Riverbed customers up to 86 per cent with software upgrade program
-
Ovum analysis ranks Orange Business Services ahead of APAC competition for service capability and strategy
- FTOS Web Applications DeveloperNSW
- FTSenior Python Web Applications DeveloperNSW
- FTSenior Field Engineer - MSNSW
- FTSenior E-Commerce PHP Developer- North Sydney- E-commerce Software $110kNSW
- FTSenior Python DeveloperNSW
- FTSenior Python DeveloperNSW
- FTWeb Developer- Drupal and PHP. Exciting new position- #2 in Dev team.$100k+SuperNSW
- FT.NET - Sitecore Developer - Melbourne - PermNSW
- FTSenior Projects EngineerNSW
- FTTest EngineerVIC
- FTTest Manager - IMMEDIATE STARTNSW
- FTTest Analyst (MS Environment) .netNSW
- FTR&D EngineerSA
- FTTechnical Account Manager - MSP + CloudVIC
- FTTest Analyst (MS Environment) .netNSW
- FTSnr Web Developer PHP/Magento/API integration into E-commerce sites. $100k+SuperNSW
- FTLead Software EngineerSA
- FTQuality ManagerSA
Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).
- Have an incident response plan.
- Pre-define your incident response team
- Define your approach: watch and learn or contain and recover.
- Pre-distribute call cards.
- Forensic and incident response data capture.
- Get your users on-side.
- Know how to report crimes and engage law enforcement.
- Practice makes perfect.
Warning: Tips for secure mobile holiday shopping
I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.









