Metrics / Budgets — News

Lack of resources affecting critical infrastructure security: Report

By Hamish Barwick | 14 November, 2011 11:44

Australia has experienced a declining participation in government-lead critical infrastructure protection (CIP) programs this year due to fewer resources, according to a new survey from Symantec.

Gartner: Security services spending to hit $US49bn in 2015

By Ellen Messmer | 11 November, 2011 05:50

Gartner is predicting that corporate spending across the world for a broad swath of security services will climb from about $US35 billion today to $US49 billion in three years, with the managed security services expected to jump most of all.

Security on a shoestring budget

By Joan Goodchild | 12 October, 2011 06:54

According to figures released recently by Kaspersky Lab, 1300 IT pros were asked about IT risks and security spending. Among large companies, the average security budget is $3.35 million, according to Kaspersky's data.

Greetings and salutations!

By Derek Slater | 26 August, 2011 02:15

1. Asking for a 10 percent budget increase in the next fiscal year:

2011 State of the CSO

By Derek Slater | 18 August, 2011 05:30 | 1 Comment

More budget? Perhaps a little. More attention from senior management? Yes, a bit. Better results? That's not so clear.

Creating a cloud SLA from diagnostic data

By Gregory Machler | 05 August, 2011 05:18

As a CSO and CIO you may be wondering why I crafted a diagnostic related to understanding your most critical web products. The original purpose of the diagnostic was to discern which applications and how applications are ported successfully to a service provider's cloud. The diagnostic determines which cloud IaaS products (storage components, network components, and virtualization machines) are needed for an application. It addresses the platform components (server/operating system and web server) in the PaaS layer. Lastly, it focuses on the SaaS software application.

CSO Corporate Partners
  • Webroot
  • Trend Micro
  • NetIQ
rhs_login_lockGet exclusive access to CSO, invitation only events, reports & analysis.
CSO Directory

Deep Security - Enterprise Virtualization Security

Advanced protection for physical, virtual and cloud servers

Security Awareness Tip

Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).


  1. Have an incident response plan.

  2. Pre-define your incident response team 

  3. Define your approach: watch and learn or contain and recover.

  4. Pre-distribute call cards.

  5. Forensic and incident response data capture.

  6. Get your users on-side.

  7. Know how to report crimes and engage law enforcement. 

  8. Practice makes perfect.

For the full breakdown on this article

Security ABC Guides

Warning: Tips for secure mobile holiday shopping

I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.