Human Resources and Information Security

The HR department may not be the first group that comes to mind when the Information Security topic surfaces.  However, Human Resources plays a significant role in the protection of sensitive information in all stages of an employment life-cycle. Typically, Human Resources’ activities related to Information Security are categorized in Read more…

Denial of Services Attacks

What is a Denial of Service Attack (DoS)?   A denial of service attack occurs when a malicious individual or element attempts or is successful at blocking access to a workstation, server, internal network, Internet, or other infrastructure services making those resources unavailable to one or multiple users.   The Read more…

Decommissioning of Third-Parties

  In the past, have you worked with third-parties and other third-parties that maintained a set or subset of your data? Is it possible that prior third-parties had hardware that was owned by your company? Is it possible that there were network or other communication connections between you and your Read more…

Access Reviews – Revisited

What are “Access Reviews”? Over time, as workforce members leave the company or move to other positions within the same organization, they no longer need access to certain systems, or they require access to new systems.  Periodically, it is important to review the access of current and terminated employees to Read more…

“MaaS” – Malware as a Service

We’re familiar with the “as a service” offerings that are commonly used to support or augment our IT applications, platforms, and infrastructure: “Saas” – Software as a Service – Typically, these are best known as cloud applications. These days, we use these more than we use software installed on our Read more…

Passwordless Authentication

We know the routine.  Open an application or go to a web site, enter in your user ID, and authenticate with a password.  Lately, however, you have noticed a third step.  Once you enter your password, you receive another instruction to enter a code sent to your mobile device or Read more…