Welcome!


Latest Articles from Web Security Journal
Today’s federal cybersecurity and information technology news: The U.S. Office of Naval Research is partnering with Chilean scientists to develop a mobile application to provide information helpful in countering pirates, arms traffickers, and illegal fishermen. More here. The Arm...
With Cloud Expo 2012 New York (10th Cloud Expo) now under four weeks away, what better time to introduce you in greater detail to the distinguished individuals in our incredible Speaker Faculty for the technical and strategy sessions at the conference... We have technical and strate...
What do the CTO of the U.S. Dept. of Justice and the CIO of the National Reconnaissance Office have in common with the CEOs of Eucalyptus, GoGrid, ActiveState, Appcara, OpSource and Nortonworks, the CTOs of Rackspace, SoftLayer and AppZero, the Founder & General Manager of Dell Boomi, ...
Just as business critical as perimeter security, having strong internal controls to manage users is important. Using cloud-managed security tools can help reduce incidents. So much is written about the events outside your perimeter; those nefarious and shadowy individuals and offshore...
“In the past year, one in seven large organizations detected hackers within their systems.” This is the highest level recorded, said the recently released PwC 2012 Information Security Breaches Survey.  It was completed in conjunction with Infosecurity Europe and supported ...
Talk of so-called “sea change developments” and “paradigm shifts” has long been rife among the IT media and the web’s wider technology commentary channels. Right now we’re all talking about cloud, mobile empowerment (let’s not forget the Bring Your Own Device tagline here) and virtual...
A US Patent and Trademark Office re-examination has found a basic RPost proof-of-delivery patent valid. In a sweeping decision all 89 of its claims have been left standing against challenges of prior art. Patent holders dream of such things. It is understood to be a so-called “fina...
With Cloud Expo 2012 New York (10th Cloud Expo) now only four weeks away, what better time to introduce you in greater detail to the distinguished individuals in our incredible Speaker Faculty for the technical and strategy sessions at the conference... We have technical and strateg...
Security concerns are the biggest thing holding back cloud adoption, but Intel says it’ll take it and its pricey $7.68 billion McAfee acquisition at least another five years to bring cloud security up to the best-in-class traditional enterprise security available now. Not very reassu...
For many of the same reasons that Software-as-a-Service is catching on with enterprise buyers, delivering web services on top of Infrastructure-as-a-Service architectures is appealing to the SaaS developers. Operational agility, lower CapEx, and a broad array of tools and services are ...
“We are very pleased to build the next generation of secure cloud computing with HP Cloud Services, and to be the first vendor to manage HP Cloud Security Group policies leveraging the OpenStack API,” commented Dave Meizlik, Dome9 VP of Marketing and Business Development, as Dome9 Secu...
With companies increasingly worried about their data in the cloud, a number of providers have cropped up to offer various types of encryption Many studies have shown a chasm between cloud service providers and their customers regarding who is responsible for the security of the custome...
While cloud-based communications include a complex web of ports and protocols, typically 85 percent of the traffic flowing in and out of an organization through the cloud is email and web, including identity services. Taking more of your business and business processes to the cloud beg...
Want to save your business money? Of course you do. What if we could show you a way to use the cloud in and around your office, get your workforce mobile, make communication faster and easier, and reduce OPEX? We can. In his session at the 10th International Cloud Expo, Jason Silverg...
Cloud computing has clearly sparked the imagination of business leaders, who see it as a powerful new way to be innovative and gain first-mover advantages. It now falls to CIOs to not only rapidly adapt to cloud computing, but to find the ways to protect their employees and customers ...
Information Security and Risk has become a top concern of IT organizations and consumers alike. Concern about inadequate Info Security remains the #1 obstacle to greater adoption of Cloud Computing, according to Intel’s research. The rapid growth of Mobile and IP-connected Embedded dev...
In today’s business world, data is the lifeblood of most organizations. As such, it has become a prime target for both external and internal threats. Data breaches made plenty of headlines in 2011 and don’t show any signs of slowing down. In fact, a recent report from Privacy Rights Cl...
In the early years of cloud computing, the idea was just to get there – to start achieving some of the promised efficiencies. But now, as cloud initiatives mature, the focus has turned to ensuring data security and privacy – no small feat, given the range of threats and global regulati...
Last week the GSA FedRAMP Program Office released the latest version of the cloud computing Security Assessment Plan (SAR) template. This document is the most recent step toward the Federal governments goal of establishing FedRAMP initial operating Capability by June 2012. The Federa...
“One of the greatest challenges to security in the cloud is management,” noted David Meizlik, Vice President of Marketing at Dome9 Security, in this exclusive Q&A with Cloud Expo Conference Chair Jeremy Geelan. “With cloud computing,” Meizlik explained, “the infrastructure is owned and...
VMTurbo has added application delivery visibility to its intelligent workload management software for cloud and virtualized environments. The new Operations Manager 3.1 basically assures companies that it’s okay to virtualize business-critical applications because it can ensure servic...
First, let’s make it clear what an endpoint is. In Microsoft’s world this term represents any client computer, server, or laptop in an organization. Forefront Endpoint Protection is a line-of-business application developed by Microsoft to provide defense against viruses, worms, and oth...
Recently (well, last night) I had the opportunity to take the Certificate of Cloud Security Knowledge exam and just wanted to put out some of my thoughts while they were fresh in my head. I always like to take a random sampling of certifications. It’s fun to challenge myself (some are ...
Enterprises want to mix the best of their own data centers with private and public cloud services without compromising security and uptime. Making internal information assets available to work across private and public clouds requires a management layer that can stitch together dispara...
If you look at some of the headline-making breaches of the past few years, they all occurred at large companies with highly dynamic and complex computing environments. Securing these environments is impossible to do without automation, which is why so much of the innovation in IT secur...
The age of Big Data is here. Organizations are no longer challenged to find enough data to answer the pertinent questions required for success in today’s dynamic business environment. Rather, companies are struggling to keep pace with the enormous volumes of data invading their organiz...
There will always be a threat from malware - malicious software that is designed to steal or corrupt data on computers. Malware affects everyone from security services to silver surfers, and when it isn’t checked it can wreak havoc. Ultimately, it doesn’t matter what size your busines...
Today’s software development is geared more towards building upon previous work and less about reinventing content from scratch. Resourceful software development organizations and developers use a combination of previously created code, commercial software, open source software, and th...
A recent article in Government Computer News raised the topic of FISMA reporting, specifically describing the “pessimism” of many USG agencies over meeting the September 2012 deadline for “using continuous monitoring to meet Federal Information Security Management Act reporting require...
SYS-CON Events announced today that Layer 7 Technologies, a leading provider of Application Gateways for SOA integration, cloud connectivity and API management, will exhibit at SYS-CON's 11th International Cloud Expo, which will take place on November 5–8, 2012, at the Santa Clara Conv...
With Cloud Expo 2012 New York (10th Cloud Expo) now just six weeks away, what better time to introduce you in greater detail to the distinguished individuals in our incredible Speaker Faculty for the technical and strategy sessions at the conference... We have technical and strategy...
Today’s federal cybersecurity and information technology news round-up: The proposed Social Networking Online Protection Act (SNOPA) would make it illegal for employers to demand access rto social media accounts. More here. The Defense Advanced Research Projects Agency has reques...
If you work in information technology and you passed through the city of London over the last week it would have been hard not to notice the InfoSec IT security conference being held at the Earl’s Court exhibition center. Logically, of course, certain themes and trends came out of th...
IT managers at enterprises of all sizes are exploring cloud computing and virtualization as a way to address conflicting demands within their organizations. These mounting pressures include a lack of internal resources, mandates from the CFO to lower costs, and the struggle to complete...
Today, security is undoubtedly the biggest risk and negative side effect to cloud computing. Fortunately, the status quo is about to change. The Trusted Computing Group (TCG), a not-for-profit organization that has developed open standards for computers, networks, storage and mobile de...
Independent industry security expert Gunnar Peterson provides the analysis and decision support that will enable you make an informed choice when evaluating Security Gateways. Guide describes security architecture capabilities, common business use cases, and deployment considerations....
Business standards and compliance services provider SAI Global is benefiting from a strategic view of IT enabled disaster recovery. When we started to get into DR, we handled it from an IT point of view and it was very much like an iceberg. We looked at the technology and said, "This...
Study after study refutes the myth that cybersecurity is compromised by malicious, brilliant hackers. Advanced persistent threats, state-sponsored hackers, and foreign intelligence agencies are serious threats, especially to major targets, but the vast majority of breaches and leaks re...
VMware has confirmed that one of its ESX hypervisor source code files was posted online. Iain Mulholland, director of VMware’s Security Response Center, posted the following event-minimizing message: “Yesterday, April 23, 2012, our security team became aware of the public posting of...
“Our new instant access app for Google Chrome makes it unbelievably easy to get secure access to any server, on-the-fly,” said Zohar Alon, Co-Founder and CEO of Dome9 Security, which announced on Wednesday the availability of Dome9 Instant Access for Google Chrome, a new browser-based ...