Security Tools

FTC Releases New Cybersecurity Guide

Focused on small businesses, the guide covers twelve topics you need to know to be secure… An article review. While there are many resources concerning cybersecurity out there, it can sometimes be difficult to find information tailored for smaller organizations i...

Cyber Challenge: A Community Bank Cyber Exercise

The FDIC has released new training material to help small banks start a discussion on risk… An article review. Sometimes it can be difficult to find a starting point when getting your employees discussing risk and technology, and while we do provide our own resou...

Equifax Ordered To Implement Security Measures

Financial regulators from eight states impose new rules in the wake of the credit reporting agency’s historic breach. An article review. The investigation by federal regulators and law enforcement officials into the breach that resulted in the release of over 140...

Object Access Limitations

Object Access Limitations. . . While offering some visibility, there are limitations to object access monitoring. If your organization has to comply with industry regulations such as GLBA, HIPAA, or Sarbanes Oxley, you know that maintaining data security and privacy are...

The Difference Between Patch and Vulnerability Management

by Eric Kroeger and Jason Mikolanis We are pleased to kick off our “guest author program” and are very excited and honored to present Eric Kroeger and Jason Mikolanis as our first guest authors.  Thank you Eric and Jason!! A deeper dive . . . This is the te...

New York to Impose New Cybersecurity Regulations

The controversial new regulations are the first in the nation, and may not be the last… An article review. On March 1 New York State became the first in the nation to impose its own cybersecurity regulations on banking institutions. Though banking institutions ha...

FFIEC Issues a Revealing Cybersecurity Assessment Tool FAQ

Questions from vendor management to mitigating controls covered in the new document. An article review.   The FFIEC released a document earlier this month covering some of the most frequently asked questions surrounding the Cybersecurity Assessment Tool (CAT), and...

One Step Closer to Secure Mobile Devices

One Step Closer to Secure Mobile Devices DARPA Funds Start-Up Company to Help Better Secure Android Smartphones If you think you have a good patch management and verification program in place, think again!  Sure, you’re supplementing WSUS with Nessus scans or some other t...

FFIEC Implements New InfoBase Technology

The Federal Financial Institutions Examination Council (FFIEC) has announced that the organization has upgraded the functions and features of the InfoBase for the FFIEC Information Technology Examination Handbook (IT Handbook). The IT Handbook consists of 11 booklets cov...

Third Party Patch Management

Vulnerabilities come in all shapes and sizes and while operating system patch management has largely been simplified with tools like WSUS, there is still a high degree of risk due to many popular third party applications and the lack of any centralized patching mechanism ...