Topic: E-Security

Speaking of Security Podcast #165

This week we present a Speaking of Security Video Podcast. Enterprises continue to do whatever it takes to reduce costs and stay competitive. Research shows that budgets seem to be flat and many organizations are actively decreasing spending as they look towards 2010. One area that is being affected is security spend. Roland Cloutier, VP and CSO for EMC discusses how to prioritize security in your 2010 budget planning.

Continue Reading

Speaking of Security Podcast #164

Click to Download/Listen

October is National Cyber Security Awareness Month, sponsored by the US Department of Homeland Security. Michael Kaiser, Executive Director of the National Cyber Security Alliance joins us on this week's Speaking of Security podcast to discuss effective cyber security practices.

Continue Reading

EMC Security Development Lifecycle featured at GFIRST 2009

About a month ago, Reeny Sondhi from EMC’s Product Security Office presented EMC’s approach to securing products. She explained how SQL Slammer, IP storage, regulations and EMC’s acquisition strategy have influenced our approach to product security.

Continue Reading

National Cyber Security Awareness Month: What it Means for Security Professionals

October 1 the National Cyber Security Alliance, along with Department of Homeland Security and the White House will kick off National Cyber Security Awareness Month.  So, what does that mean to security professionals?  This is a month for you to reassess, take stock in what you are doing, share your knowledge and shine.

Continue Reading

XMLDsig flaw and the case for vendor collaboration on security vulnerability disclosures

Today, the U.S. CERT published an advisory (VU#466161; CVE-2009-0217) reviewing how the support for HMAC truncation by XMLDsig can lead to an authentication bypass. While the advisory needs to be taken seriously to address potential vulnerabilities in applications that require message authentication and integrity, I wanted to write some of my thoughts about its impact and also how vendor collaboration on this issue led us to create an effective and timely remediation strategy for EMC and RSA customers.

Continue Reading

An Opportunity to Influence the Art of Secure Software Development

Until the end of July, all who have a passion for software assurance can turn their passion into an opportunity to influence the content of one of the foremost reference documents on the topic.

Continue Reading

Speaking of Security Podcast #151

Click to Download/Listen

Roland Cloutier, VP and CSO of EMC joins us on this week's Speaking of Security podcast.

Continue Reading

Speaking of Security Podcast #148

Click to Download/Listen (7:15)

This week's Speaking of Security podcast features a topical discussion on business continuity planning. Recent global concerns regarding a potential Swine Flu pandemic have organizations looking at possible operational and business disruptions. Sam Curry, VP of Product Management for RSA is our guest.

Continue Reading

RSA FraudAction Research Lab

Blog


Eric Baize: Software Security Assurance Blog

Blog


Sam Curry

Blog


Todd Graham: Deconstructing Governance, Risk and Compliance

Blog


Dr. Ari Juels

Blog


Shannon Kellogg

Blog


Mischel Kwon

Blog


Uri Rivner

Blog


Paul Stamp: Token Security Guy

Blog

Securing Virtualization Bloggers

Securing Virtualization Blog