IT Security

Featured Video of the Month

Warren Davidson, Director of Business Development and Strategic Alliances, says that Objectivity provides data management solutions for large, scalable government databases with an emphasis on complex data. Being able to manage a mountain of data, connect the dots and find the 3-4 degrees of separation, involves pedabytes of data. Davidson argues that Objectivity’s ability to find the right data is critically important to the security of our country.

News

Thu, 2010-03-25 01:15 PM
MessageLabs Intelligence has tracked a recent rise in spam using TLS (transport layer security), a technique for sending e-mail through an encrypted channel. In a recent report, MessageLabs noted...
Tue, 2010-03-23 09:45 PM
Steven Chabinsky
The “bad guys” perpetrating cyber-crimes around the world are taking their activities deeper underground, typically are becoming specialists in one specific aspect of their trade, and are making so...
Tue, 2010-03-23 07:41 PM
Daniel Myslewski
Even as some of the federal government’s larger security programs are being put on hold, Daniel Myslewski, who is spearheading Stanley Convergent Security’s federal business development group, says...
Tue, 2010-03-23 11:54 AM
Are the Department of Defense and other agencies, which collect voluminous amounts of data from their many intelligence, surveillance, and reconnaissance (ISR) capabilities, able to make good use of...
Mon, 2010-03-22 04:10 PM
Michael Sheehan
Clarksburg, MD-based Thales Communications, Inc., a Thales USA company operating under a proxy agreement with the Department of Defense, has named Michael Sheehan its new CEO and president.The...
Fri, 2010-03-19 12:36 PM
Daniel Chenok
The Information Security and Privacy Advisory Board, which provides advice on federal government information systems, will hold three days of public meetings in Washington, DC, April 7-9, which will...
Thu, 2010-03-18 03:23 PM
Agiliance Inc., a provider of integrated governance, risk and compliance (GRC) solutions, has unveiled RiskVision 5.0, which the company calls an “industry-first” GRC solution, giving organizations a...
Thu, 2010-03-18 03:20 PM
McLean, VA-based Science Applications International Corporation reports that it has been awarded a prime contract by the U.S. Navy's Program Executive Office (PEO) of Command, Control, Communications...
Thu, 2010-03-18 03:16 PM
  Belcamp, MD-based SafeNet, Inc., a specialist in information security, has unveiled solutions that it characterizes as enabling organizations to ensure the security of sensitive data in cloud...
Thu, 2010-03-18 01:59 PM
The Office of Naval Research has issued a broad agency announcement seeking new technical approaches to defending its worldwide computer networks. It says this will require a major paradigm shift...
Wed, 2010-03-17 04:17 PM
Federal decision makers are “perpetually behind the curve in technology adoption compared to the private sector, and hampered in technology adoption as a result of old legislation.”
Wed, 2010-03-17 03:51 PM
Sydney, Australia-based Avalias, a creator of immersive emergency training software solutions for homeland defense / response agencies and corporate continuity planners, has introduced Avalanche TTX...

Commentary and Opinions

A new class of products called "virtual security" has emerged to tackle the security challenges posed by virtual deployments.

Virtualization has proven incredibly effective at improving operational agility, reducing IT operating costs and lowering data center power and cooling expenses. For these reasons, enterprises and government agencies are continuing to heavily invest in virtualization, despite the severe economic downturn affecting most other IT sectors.

As different industries grapple with the need to ensure the security of their data, systems and infrastructure, specific trade and industry groups have continued to rapidly develop and adopt their own information security standards.

Just as the PCI DSS was developed to address security of cardholder data for retailers, payment processors, and others, the North American Electric Reliability Corporation (NERC) has developed their own standards designed to help organizations involved in the generation or transmission of electricity -- from regional energy companies, to reliability coordinators, to NERC itself -- ensure the confidentiality, integrity and availability of critical energy infrastructure.

For many years, the term 'information security' has been synonymous with protecting the network perimeter from outside threats -- hackers, viruses and other malware, intruders and so on. But there has been a growing realization in recent years that protecting the network perimeter is not enough.

As incidents described in the news media over the last couple of years have shown, people need to consider the risks from internal threats, as well. Risks posed by lost and stolen laptops, magnetic tapes and other types of media, misuse of peripheral devices like USB memory sticks or MP3 players, and the sending of confidential information by e-mail.

Companies put tremendous faith in network security defenses, spending millions annually on anti-threat countermeasures. Given the investment, our networks must be getting more secure, right? Wrong.

Each day brings new reports of spectacular network failures. Already this year we've had major breaches at Heartland, Kaiser and the FAA. Network security is filled with dirty little secrets to which companies turn a blind eye because organizations refuse to accept failure as an option.

The issue of cyber-security has become the subject of great debate in the federal government today, and with good reason: information technology (IT) security is mission-critical for government agencies, corporations, small businesses and even individuals. While many valuable recommendations have already come of this discussion, success in cyber-security requires both strong leadership and logical implementation.

Company News

Gemalto, a digital security provider, has announced the launch of its PROX DU smart card reader for physical and logical access control. The dual-interface reader makes it convenient to securely access a host of applications using both contactless and contact technologies, with one single device.

The PROX DU is fully plug-n-play on Windows OS in both contactless and contact modes, a feature unique to the Gemalto solution, the company says in a press release it issued on September 8.

The Kingdom of Jordan has successfully deployed Intergraph public safety and security incident management software as part of a comprehensive, nationwide homeland security initiative to prevent and respond to local and regional terrorism threats.

ArcSight, Inc., a producer of cybersecurity and compliance solutions, has previewed a wide array of new and existing features that will highlight its 6th annual users’ conference, called Protect ’10, scheduled for September 19-22 in Washington, DC.

Leading the expanded program will be presentations by ArcSight executives Tom Reilly, President and CEO; Dr. Prescott Winter, CTO Public Sector; and Hugh Njemanze, Executive VP of Research and Development, as well as major customers and experts, including:

General Dynamics Advanced Information Systems, a principal contractor to defense, intelligence and homeland security customers, and Bivio Networks, a provider of network systems for securing, monitoring and controlling critical network infrastructure, announced on August 16 a strategic partnership to deliver an array of scalable, resilient and innovative cyber-security solutions for both the public and private sectors. 

Scalable Network Technologies, Inc. (SNT), which engages in wireless network evaluation, announced on August 18 that the company was awarded a project from the Test & Evaluation / Science and Technology Program at the Test Resource Management Center, which reports directly to the Under Secretary of Defense for Acquisition, Technology, and Logistics. 

Lieberman Software, a provider of privileged identity management solutions, has announced a specialized webinar for federal IT managers, security directors, information assurance managers, network administrators and other government agency executives charged with security, auditing, risk and regulatory compliance.

Safe Banking Systems Software, LLC (SBS), a provider of anti-money laundering and compliance solutions, and Centrifuge Systems, Inc., of McLean, VA, a provider of advanced link analysis software, have joined forces to provide government agencies, banks, financial services firms and other organizations with the ability to combat financial crime by detecting entities in corporate databases that pose risk.

Science Applications International Corporation (SAIC), based in McLean, VA, has announced it has been awarded a task order by the General Services Administration (GSA) Greater Southwest Region to provide software development and sustainment support to the U.S. Air Force.  

 

/>

Essential Guides


Technology Sectors

Market Sectors

Recent IT Security Videos

Elan Moriah, President of Video Communications and Enterprise Business divisions, describes Verint’s business as collecting, analyzing and distributing information focused on voice and video.  The trend in vertical such as finance, retail, critical infrastructure and government, he says, is for customers to seek their whole system from one vendor such as Verint, who provides innovative tools and technologies that add up to a solution.

According to Amir Ben-Efraim, Founder and CEO, Altor Networks focuses on securing virtual environments in clouds by securing the virtual machines that are the underlying atoms in cloud computing. Federal government clients to date include the U.S. Army, Brookhaven National Institute and the National Renewable Energy Labs. 

Philip Lieberman, President, indicates that Lieberman Software provides privileged identity management, primarily to organizations with more than 1000 employees. Clients include most branches of the military, DHS and other federal agencies, plus state and local governments.  The latest Enterprise Random Password Management is the first version to support privileged identity management in the cloud, ensuring zero information to departing employees with privileged entry.

Tipping Point, a global brand of the 3Com corporation, focuses primarily on intrusion detection systems that provide deep packet inspection of network traffic, according to Roark Pollock, Worldwide Product Manager. The company provides security solutions for federal, state and local governments, creating a secure network that brings network and security components together on a single platform.

In providing GSN with a sneak preview of the 2010 Conference, Dr. Hugh Thompson, Program Chair of RSA Conferences and Adjunct Professor at Columbia University, cited Cloud Security, Consumerization and Social Networking as the anticipated hot topics, while he recommended the Innovation Sandbox and its competition among start-up companies as an event that telegraphs what the big problems in IT Security will be in the next few years.

Upcoming Webinars

Wed, 10/06/2010 - 1:00pm - 2:00pm

Leveraging FICAM to Modernize Your Physical and Logical Access Control

Is your agency prepared to meet the government''s Federal Identity, Credential and...

White Papers

THE NEED FOR ACTIVE NETWORK FORENSICS
Neither small to large enterprises nor government institutions are immune to the threats that pervade today’s security landscape. Leakage of congressional documents, a half million credit card numbers hacked from a leading web host provider, and even a major security vendor falling victim to a website breach are just a few recent headlines that proclaim the costly network threats facing organizations of all types and sizes. Active network forensics makes all past and present network data instantly visible and allows perfect fidelity through replaying past traffic, enabling organizations to detect and understand the full source and scope of any security event so they can protect against further attacks.

Recent Webinars

Centrify
Mon, 08/16/2010 - 1:00pm - 2:00pm

Use the resources you already have to easily deploy MACS with CAC and...

Thu, 06/10/2010 - 1:00pm

GSN Webinar - A Holistic Approach to Cybersecurity Using Dynamic Traffic Intelligence

No vendor can solve the entire problem. Learn how to use...

Wed, 06/09/2010 - 11:00am

 This webinar is available to you at any time--on any day.

...

New Products

Millis, MA-based Kanguru Solutions, a manufacturer of secure IT storage solutions, has announced the ad...

Reston, VA-based Input, which specializes in government business, has unveiled new research detailing adoption trends for cloud computing, virtualization, service-oriented archi...

Rockville, MD-based Telvent reports that it is the first vendor selected to participate in a DHS superv...