<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Zecurion Company Blog</title>
	
	<link>http://www.zecurion.com/server-software-blog</link>
	<description>Data Storage Security, Data Loss Prevention</description>
	<lastBuildDate>Mon, 16 Apr 2012 14:14:59 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/zecurion/qwAh" /><feedburner:info uri="zecurion/qwah" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><item>
		<title>12 Reasons to Prevent Data Leaks with Zecurion’s Zlock</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/p3AkR3Ek1cE/</link>
		<comments>http://www.zecurion.com/server-software-blog/2012/04/12-reasons-to-prevent-data-leaks-with-zecurions-zlock/#comments</comments>
		<pubDate>Mon, 16 Apr 2012 14:14:59 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[data loss prevention]]></category>
		<category><![CDATA[DLP]]></category>
		<category><![CDATA[information leakage]]></category>
		<category><![CDATA[Zecurion]]></category>
		<category><![CDATA[Zlock]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=443</guid>
		<description><![CDATA[1. Advanced Data Loss Prevention (DLP)
Monitor and restrict movement of data off the local network or managed devices using peripherals and removable data storage.
2. Message and File Content Analysis (via integration with Zgate)
Monitor and restrict movement of data off the local network or managed devices using network communications channels (email, instant messaging, etc.)
3. Complete Device [...]]]></description>
			<content:encoded><![CDATA[<p>1. Advanced Data Loss Prevention (DLP)</p>
<p><a href="http://www.zecurion.com/zlock.php" target="_blank">Monitor and restrict movement of data</a> off the local network or managed devices using peripherals and removable data storage.</p>
<p>2. Message and File Content Analysis (via integration with Zgate)</p>
<p>Monitor and restrict movement of data off the local network or managed devices using network communications channels (email, instant messaging, etc.)</p>
<p>3. Complete Device Access Control</p>
<p>Control access by any connectable device including USB, hard drives, flash memory, CD/DVD drives, COM and LPT ports, local or network printers, PCMCIA, IEEE 1394 (Firewire), etc.</p>
<p>4. Policy-Driven Access Management</p>
<p>Control use of peripherals and pluggable devices by creating and applying policies with different access privileges (full access, read-only, denied access). Implement &#8220;online&#8221;, &#8220;offline&#8221;, &#8220;VPN&#8221;, or time-driven policies.</p>
<p>5. Access Request Handling Process</p>
<p>Manage device access requests sent by users via email or called in by phone using a built-in workflow.</p>
<p>6. Integration with Windows Active Directory (AD)</p>
<p>Use native Windows authentication. Assign Active Directory (AD) users or groups to Zlock policies.</p>
<p>7. Shadow Copy</p>
<p>Take a snapshot of data that was accessed or moved to/from a connected device&#8211;even if it was printed as hard copy using a local or networked printers.</p>
<p>8. Real-Time Monitoring and Reporting</p>
<p>Monitor use of devices and run reports against event logs in real-time.</p>
<p>9. Centralized Installation and Management</p>
<p>Remotely install and update software components, settings, and policies across the enterprise from a single location.</p>
<p>10. Self-Checked System Integrity</p>
<p>Self-monitoring of Zlock integrity, preventing unauthorized changes to the system settings or policies.</p>
<p>11. Proven Technology</p>
<p>Utilize a robust, highly-available DLP system capable of handling the most demanding security requirements.</p>
<p>12. Integration with Other Zecurion Security Products</p>
<p>Manage all other aspects of data security, including <a href="http://www.zecurion.com/server-software-blog/2012/04/12-reasons-to-protect-your-data-with-zserver-storage/" target="_blank">encryption of operational data stores</a>, file servers, and backups, and <a href="http://www.zecurion.com/zgate.php" target="_blank">lock down email and instant messaging</a> communications.</p>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/p3AkR3Ek1cE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2012/04/12-reasons-to-prevent-data-leaks-with-zecurions-zlock/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2012/04/12-reasons-to-prevent-data-leaks-with-zecurions-zlock/</feedburner:origLink></item>
		<item>
		<title>12 Reasons to Protect Your Data with Zserver Storage</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/hwA6mn_jG7w/</link>
		<comments>http://www.zecurion.com/server-software-blog/2012/04/12-reasons-to-protect-your-data-with-zserver-storage/#comments</comments>
		<pubDate>Thu, 12 Apr 2012 17:24:38 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[data encryption]]></category>
		<category><![CDATA[EKMS]]></category>
		<category><![CDATA[enterprise key management server]]></category>
		<category><![CDATA[Zecurion]]></category>
		<category><![CDATA[Zserver Storage]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=440</guid>
		<description><![CDATA[1. Server Data Encryption
Transparently encrypt data on servers using the latest adaptive multithreaded encryption (AME) patent-pending technology.
2. Disk Access Control
Control applications and systems allowed to access your encrypted data store.
3. Backup Data Encryption
Apply AME protection to backup tapes and other backup storage media.
4. Integration with Prominent Backup Systems
Encrypt backup media using your current backup systems [...]]]></description>
			<content:encoded><![CDATA[<p><strong>1. Server Data Encryption</strong></p>
<p>Transparently encrypt data on servers using the latest adaptive multithreaded encryption (AME) patent-pending technology.</p>
<p><strong>2. Disk Access Control</strong></p>
<p>Control applications and systems allowed to access your encrypted data store.</p>
<p><strong>3. Backup Data Encryption</strong></p>
<p>Apply AME protection to backup tapes and other backup storage media.</p>
<p><strong>4. Integration with Prominent Backup Systems</strong></p>
<p>Encrypt backup media using your current backup systems such as BrightStor, ARCserve, Veritas, Backup Exec, and others.</p>
<p><strong>5. Persistent Encryption Algorithms</strong></p>
<p>Protect data using strong AES with 256-bit keys, loading keys only in RAM memory (never written to a hard drive).</p>
<p><strong>6. Encryption Key Quorums</strong></p>
<p><span style="font-size: 11.000000pt; font-family: 'Cambria'">Split encryption keys into multiple fragments and set a minimum number of fragments required to reassemble a key.</span></p>
<p><strong><span style="font-size: 11.000000pt; font-family: 'Cambria'">7. Enterprise Key Management Server (EKMS)</span></strong></p>
<p><span style="font-size: 11.000000pt; font-family: 'Cambria'">Generate, store, auto-load and manage keys across the enterprise. </span></p>
<p><strong><span style="font-size: 11.000000pt; font-family: 'Cambria'">8. Security in Cloud Computing</span></strong></p>
<p><span style="font-size: 11.000000pt; font-family: 'Cambria'">Use EKMS to load your keys to “cloud computing” servers. </span></p>
<p><strong><span style="font-size: 11.000000pt; font-family: 'Cambria'">9. Integration with Windows Active Directory</span></strong></p>
<p><span style="font-size: 11.000000pt; font-family: 'Cambria'">Use native Windows authentication. Assign Active Directory users (groups). </span></p>
<p><strong><span style="font-size: 11.000000pt; font-family: 'Cambria'">10. High Performance Support of Clustering</span></strong></p>
<p><span style="font-size: 11.000000pt; font-family: 'Cambria'">Perform data encryption using adaptive multithreaded encryption technology. Utilize your clustered CPU power. </span></p>
<p><strong><span style="font-size: 11.000000pt; font-family: 'Cambria'">11. Easy Installation and Management</span></strong></p>
<p><span style="font-size: 11.000000pt; font-family: 'Cambria'">Install and update software components using Installation Wizard. Remotely manage using a single console. </span></p>
<p><strong><span style="font-size: 11.000000pt; font-family: 'Cambria'">12. Integration with Other Zecurion Products</span></strong></p>
<p><span style="font-size: 11.000000pt; font-family: 'Cambria'">Manage all other aspects of data security including lockdown of perimeter endpoints, email and messaging communications from one source. </span></p>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/hwA6mn_jG7w" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2012/04/12-reasons-to-protect-your-data-with-zserver-storage/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2012/04/12-reasons-to-protect-your-data-with-zserver-storage/</feedburner:origLink></item>
		<item>
		<title>Negligent Employees Are Leading Cause of Data Breaches</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/pUdZEwMxLqQ/</link>
		<comments>http://www.zecurion.com/server-software-blog/2012/04/negligent-employees-are-leading-cause-of-data-breaches/#comments</comments>
		<pubDate>Fri, 06 Apr 2012 16:53:32 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[average cost]]></category>
		<category><![CDATA[average cost of data breach]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[negligent users]]></category>
		<category><![CDATA[Ponemon]]></category>
		<category><![CDATA[Symantec]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=437</guid>
		<description><![CDATA[It&#8217;s that time of year again. Ponemon recently published its latest survey of data breach costs. The report&#8211;sponsored by Symantec&#8211;provides a lot of valuable information and insight into the underlying causes of data breaches, and the impact on organizations that don&#8217;t take the appropriate precautions to prevent them.
For the first time in the seven years [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s that time of year again. Ponemon recently published its <a href="http://bit.ly/zB0wlN" target="_blank">latest survey of data breach costs</a>. The report&#8211;sponsored by Symantec&#8211;provides a lot of valuable information and insight into the underlying causes of data breaches, and the impact on organizations that don&#8217;t <a href="http://www.zecurion.com/products.php" target="_blank">take the appropriate precautions </a>to prevent them.</p>
<p>For the first time in the seven years Ponemon has been tracking this data, the average cost of a data breach has declined. The total impact went <a href="http://www.zecurion.com/server-software-blog/2011/03/got-a-spare-7-2-million-in-your-it-budget/" target="_blank">down from $7.2 million </a>to only $5.5 million, and the average cost per compromised record dropped from $214 to $194. The decline in financial impact of a data breach can be largely attributed to customer apathy. Data breaches are so common that users are jaded and less likely to pack up and take their business elsewhere. It&#8217;s good news for the affected companies, but for the wrong reason.</p>
<p>Here are some other key findings from the report highlighted in a <a href="http://www.symantec.com/about/news/release/article.jsp?prid=20120320_02&amp;om_ext_cid=biz_socmed_twitter_facebook_marketwire_linkedin_2012Mar_worldwide__CODB_US" target="_blank">Symantec press release</a>:</p>
<ul>
<blockquote>
<li><strong>Negligent insiders and malicious attacks are the main causes of data breach.</strong> Thirty-nine percent of organizations say negligence was the root cause  of the data breaches. For the first time, malicious or criminal attacks  account for more than a third of the total breaches reported in this  study. Since 2007, they also have been the most costly breaches.  Accordingly, organizations need to focus on processes, policies and  technologies that address threats from the malicious insider or hacker.</li>
<li><strong>Certain organizational factors reduce the overall cost.</strong> If the organization has a CISO with overall responsibility for  enterprise data protection the average cost of a data breach can be  reduced as much as $80 per compromised record. Outside consultants  assisting with the breach response also can save as much as $41 per  record. When considering the average number of records lost or stolen,  all of these factors can provide significant and positive financial  benefits.</li>
<li><strong>Specific attributes or factors of the data breach also can increase the overall cost.</strong> For example, in this year’s study organizations that had their first  ever data breach spent on average $37 more per record. Those that  responded and notified customers too quickly without a thorough  assessment of the data breach also paid an average of $33 more per  record. Data breaches caused by third parties or a lost or stolen device  increased the cost by $26 and $22, respectively.</li>
<li><strong>Detection and escalation costs declined but notification costs increased.</strong> Detection and escalation costs declined from approximately $460,000 in  2010 to $433,000 in 2011. These costs refer to activities that enable a  company to detect the breach and whether it occurred in storage or in  motion.</li>
<li><strong>More customers remain loyal following the data breach.</strong> For the first time, fewer customers are abandoning companies that have a  data breach. However, certain industries are more susceptible to  customer churn, which causes their data breach costs to be higher than  the average. Taking steps to keep customers loyal and repair any damage  to reputation and brand can help reduce the cost of a data breach.</li>
</blockquote>
</ul>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/pUdZEwMxLqQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2012/04/negligent-employees-are-leading-cause-of-data-breaches/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2012/04/negligent-employees-are-leading-cause-of-data-breaches/</feedburner:origLink></item>
		<item>
		<title>H&amp;R Block Manager Steals Tax Customer’s Identities and Refunds</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/auJRkccdHLo/</link>
		<comments>http://www.zecurion.com/server-software-blog/2012/03/hr-block-manager-steals-tax-customers-identities-and-refunds/#comments</comments>
		<pubDate>Thu, 29 Mar 2012 03:17:33 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[data protection]]></category>
		<category><![CDATA[fraudulent tax return]]></category>
		<category><![CDATA[H&R Block]]></category>
		<category><![CDATA[identity theft]]></category>
		<category><![CDATA[information leakage]]></category>
		<category><![CDATA[insider threat]]></category>
		<category><![CDATA[IRS]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=434</guid>
		<description><![CDATA[When it comes to data protection and guarding sensitive information from being leaked, most organizations have policies and tools in place designed to defend against malicious outsiders. The reality, though&#8211;which is demonstrated time and time again&#8211;is that authorized users on the inside pose a much greater threat.
A manager of an H&#38;R Block tax preparation office [...]]]></description>
			<content:encoded><![CDATA[<p>When it comes to data protection and guarding sensitive information from being leaked, most organizations have policies and tools in place designed to defend against malicious outsiders. The reality, though&#8211;which is demonstrated time and time again&#8211;is that authorized users on the inside pose a much greater threat.</p>
<p>A manager of an H&amp;R Block tax preparation office in California was arrested for stealing the identities of H&amp;R Block clients and filing fraudulent tax returns on their behalf. A <a href="http://www.accountingtoday.com/news/HR-Block-Manager-Arrested-Identity-Theft-Tax-Clients-62102-1.html" target="_blank">post on AccountingToday.com</a> about the incident states, &#8220;He prepared bogus tax returns in their names designed to obtain tax  refunds and credits, according to prosecutors, and then used H&amp;R  Block Emerald Cards to withdraw the fraudulently obtained refunds from  automated teller machines.&#8221;</p>
<p>You should have tools and policies in place to guard your data against unauthorized access from the outside. But, don&#8217;t forget that authorized users are in a position to intentionally steal or compromise data, or inadvertently share or expose it. You need to make sure you have tools in place to <a href="http://www.zecurion.com/zlock.php" target="_blank">monitor and defend against data leaks </a>from the inside as well.</p>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/auJRkccdHLo" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2012/03/hr-block-manager-steals-tax-customers-identities-and-refunds/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2012/03/hr-block-manager-steals-tax-customers-identities-and-refunds/</feedburner:origLink></item>
		<item>
		<title>Printed Data Needs Protection Too</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/_W4jbPdo5ro/</link>
		<comments>http://www.zecurion.com/server-software-blog/2012/03/printed-data-needs-protection-too/#comments</comments>
		<pubDate>Thu, 08 Mar 2012 21:07:38 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[disposal]]></category>
		<category><![CDATA[hard copy]]></category>
		<category><![CDATA[paper]]></category>
		<category><![CDATA[sensitive data]]></category>
		<category><![CDATA[Zlock]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=431</guid>
		<description><![CDATA[Most of the focus of data protection and data loss prevention is on digital data. Organizations have policies that dictate what information can or cannot be shared via email, social network, or other online methods, and there are tools in place to monitor for violations and try to detect and prevent sensitive data from leaving [...]]]></description>
			<content:encoded><![CDATA[<p>Most of the focus of data protection and data loss prevention is on digital data. Organizations have policies that dictate what information can or cannot be shared via email, social network, or other online methods, and there are tools in place to monitor for violations and try to detect and prevent sensitive data from leaving the network.</p>
<p>What all of this fails to address, though, is that if you take that same sensitive information and print it on paper, it still poses a data loss risk and needs to be monitored and protected. There seem to be an alarming and escalating number of incidents involving information being exposed or compromised through improper handling or disposal of hard copy printouts. Just recently, a <a href="http://www.thecourier.co.uk/News/article/21519/scottish-prison-service-investigating-castle-huntly-paperwork-blunder.html" target="_blank">prison in Scotland</a>, and a <a href="http://www.abc15.com/dpp/news/region_northern_az/payson/state-agency-leaves-arizonans-sensitive-documents-in-dumpster" target="_blank">county government office in Arizona</a> have made the mistake of exposing sensitive data by tossing it out without regard for its confidentiality.</p>
<p>Make sure you have policies in place that dictate how printed sensitive data should be handled and disposed of. You should also <a href="http://www.zecurion.com/zlock.php" target="_blank">have tools in place </a>that monitor the sensitive data that is sent to printers within the organization so you at least have a record of what information might be exposed.</p>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/_W4jbPdo5ro" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2012/03/printed-data-needs-protection-too/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2012/03/printed-data-needs-protection-too/</feedburner:origLink></item>
		<item>
		<title>Weak Random Numbers Are Achilles Heel for Encryption</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/gJwax7mgjZc/</link>
		<comments>http://www.zecurion.com/server-software-blog/2012/02/weak-random-numbers-are-achilles-heel-for-encryption/#comments</comments>
		<pubDate>Fri, 17 Feb 2012 14:30:45 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[Bruce Schneier]]></category>
		<category><![CDATA[cryptography]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[public key]]></category>
		<category><![CDATA[random number]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=429</guid>
		<description><![CDATA[There have been some revelations circulating that researchers have determined that a very small percentage of public keys used for encryption are inherently weak. Bruce Schneier, a respected cryptologist and Chief Security Technology Office of BT, says in a blog post that the issue is almost certainly the result of a flawed random number generator.
Schneier [...]]]></description>
			<content:encoded><![CDATA[<p>There have been some revelations circulating that researchers have determined that a very small percentage of public keys used for encryption are inherently weak. Bruce Schneier, a respected cryptologist and Chief Security Technology Office of BT, <a href="http://www.schneier.com/blog/archives/2012/02/lousy_random_nu.html" target="_blank">says in a blog post</a> that the issue is almost certainly the result of a flawed random number generator.</p>
<p>Schneier explains, &#8220;This shouldn&#8217;t come as a surprise.  One of the hardest parts of  cryptography is random number generation.  It&#8217;s really easy to write a  lousy random number generator, and it&#8217;s not at all obvious that it is  lousy.&#8221;</p>
<p>Schneier goes on to address the issue of what impact  this has in terms of real-world security, and the encryption keys being used today:</p>
<blockquote><p>What is the security risk?  There&#8217;s some, but it&#8217;s hard to know how  much.  We can assume that the bad guys can replicate this experiment and  find the weak keys.  But they&#8217;re random, so it&#8217;s hard to know how to  monetize this attack.  Maybe the bad guys will get lucky and one of the  weak keys will lead to some obvious way to steal money, or trade  secrets, or national intelligence.  Maybe.</p></blockquote>
<p>The random number generator (RNG) forms the foundation for creating keys, so any RNG that is in any way predicatble weakens the security of the whole system.</p>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/gJwax7mgjZc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2012/02/weak-random-numbers-are-achilles-heel-for-encryption/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2012/02/weak-random-numbers-are-achilles-heel-for-encryption/</feedburner:origLink></item>
		<item>
		<title>Texas Police Officer Details Exposed</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/e5zenEoOMiI/</link>
		<comments>http://www.zecurion.com/server-software-blog/2012/02/texas-police-officer-details-exposed/#comments</comments>
		<pubDate>Mon, 06 Feb 2012 13:40:29 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data protection]]></category>
		<category><![CDATA[Texas]]></category>
		<category><![CDATA[Texas Police Association]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=426</guid>
		<description><![CDATA[The hacktivist collective known as Anonymous is taking credit for exposing the names, addresses, and police departments of hundreds of Texas police officers. The group hacked the Texas Police Association website to obtain the data because it feels that the official response to a police officer found to be collecting child pornography is too timid.
While [...]]]></description>
			<content:encoded><![CDATA[<p>The hacktivist collective known as Anonymous is taking credit for exposing the names, addresses, and police departments of <a href="http://www.wfaa.com/news/local/Hackers-publish-names-address-of-hundreds-of-Texas-police-officers-138620174.html" target="_blank">hundreds of Texas police officers</a>. The group hacked the Texas Police Association website to obtain the data because it feels that the official response to a police officer found to be collecting child pornography is too timid.</p>
<p>While it is understandable to be upset, and sympathize with the cause, the actions of Anonymous can&#8217;t be excused. Compromising personal information of law enforcement officers doing their duty to protect their communities in retaliation for the actions of a sick rogue officer, or even the seemingly tepid response to his alleged crimes crosses the line no matter how you slice it.</p>
<p>That said, this also isn&#8217;t the first time the Texas Police Association has been targeted, and there is also no excuse for why sensitive information like the personal addresses of police officers is not better protected. The Texas Police Association needs to take a close look at its network and data security measures. It should have tools in place that <a href="http://www.zecurion.com/zserver.php" target="_blank">encrypt and protect the data</a> stored there even if hackers manage to compromise the server itself.</p>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/e5zenEoOMiI" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2012/02/texas-police-officer-details-exposed/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2012/02/texas-police-officer-details-exposed/</feedburner:origLink></item>
		<item>
		<title>Do You Have a Data Protection Policy?</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/oVpvsQCg3fc/</link>
		<comments>http://www.zecurion.com/server-software-blog/2012/01/do-you-have-a-data-protection-policy/#comments</comments>
		<pubDate>Tue, 03 Jan 2012 14:15:59 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[data protection policy]]></category>
		<category><![CDATA[Zecurion]]></category>
		<category><![CDATA[Zgate]]></category>
		<category><![CDATA[Zlock]]></category>
		<category><![CDATA[Zserver]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=422</guid>
		<description><![CDATA[Technology is great &#8212; and Zecurion is in the business of providing industry-leading data encryption and data loss prevention solutions &#8212; but  you also need to have an established policy for data handling and data protection. Tools like Zlock, Zgate, and Zserver do an excellent job of monitoring network traffic and locking down sensitive data [...]]]></description>
			<content:encoded><![CDATA[<p>Technology is great &#8212; and Zecurion is in the business of providing industry-leading data encryption and data loss prevention solutions &#8212; but  you also need to have an established policy for data handling and data protection. Tools like <a href="http://www.zecurion.com/zlock.php" target="_blank">Zlock</a>, <a href="http://www.zecurion.com/zgate.php" target="_blank">Zgate</a>, and <a href="http://www.zecurion.com/zserver.php" target="_blank">Zserver</a> do an excellent job of monitoring network traffic and locking down sensitive data to ensure it isn&#8217;t compromised or exposed, but no software tool is fool proof. They are there to augment and support the policies your organization has in place. Neither policy, nor technology alone can prevent every data breach incident, but the combination of a documented data protection policy, with the right technology to support it will give you peace of mind that your data is as safe as it can be.</p>
<p>So, what sorts of things should your data protection policy cover?</p>
<ul>
<li>A designated role responsible for maintaining the policy</li>
<li>A system for defining the classification of data based on its sensitivity or criticality</li>
<li>Provisions for conducting a risk analysis to identify where sensitive data is stored, how it is used, and where it travels to</li>
<li>Established guidelines for data handling and protection procedures for employees</li>
<li>Defined disciplinary measures for violations of the policy</li>
<li>Restrictions on physical access to the servers that store and process sensitive data</li>
<li>A plan for backing up critical and sensitive data, and ensuring that the backup data is secure</li>
<li>A system for monitoring and periodically reviewing data access to ensure it is safe</li>
<li>Define data breach incident reporting requirements and incident handling procedures</li>
<li>Establish a periodic review of the data protection policy to modify or update it as needed</li>
</ul>
<p>This is just a baseline, but it&#8217;s a start. If you don&#8217;t have a written data protection policy that your employees are aware of you can&#8217;t expect them to follow it. Develop an effective data protection policy, then support and enforce that policy with the award-winning tools from <a href="http://www.zecurion.com/" target="_blank">Zecurion</a>.</p>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/oVpvsQCg3fc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2012/01/do-you-have-a-data-protection-policy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2012/01/do-you-have-a-data-protection-policy/</feedburner:origLink></item>
		<item>
		<title>Time Is Running Out</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/PwedRuNZ7sM/</link>
		<comments>http://www.zecurion.com/server-software-blog/2011/12/time-is-running-out/#comments</comments>
		<pubDate>Tue, 27 Dec 2011 23:04:56 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[data loss prevention]]></category>
		<category><![CDATA[DLP]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[Zecurion]]></category>
		<category><![CDATA[Zgate]]></category>
		<category><![CDATA[Zlock]]></category>
		<category><![CDATA[Zserver]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=419</guid>
		<description><![CDATA[I know you are busy spending time with family, enjoying the holidays, and not even thinking about business, or protecting your data &#8212; but time is running out.
Zecurion is offering special discount pricing on our award-winning data loss prevention and encryption products through the end of the year. Is your data adequately protected? Do you [...]]]></description>
			<content:encoded><![CDATA[<p>I know you are busy spending time with family, enjoying the holidays, and not even thinking about business, or protecting your data &#8212; but time is running out.</p>
<p>Zecurion is offering special discount pricing on our award-winning data loss prevention and encryption products through the end of the year. Is your data adequately protected? Do you have the right tools in place to enable you to exercise some control over how and where your sensitive data goes without getting in the way of productivity?</p>
<p>You simply purchase the one-year support agreement, and we&#8217;ll throw in the product license for free. It is an 80 percent savings off the normal price. You owe it to yourself &#8212; and the employees, customers, vendors, and others that trust you with sensitive data &#8212; to take advantage of this offer before the ball drops at midnight on December 31.</p>
<p>Your 2012 will be much happier if you have the peace of mind that comes with knowing your data is protected. Happy New Year!</p>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/PwedRuNZ7sM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2011/12/time-is-running-out/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2011/12/time-is-running-out/</feedburner:origLink></item>
		<item>
		<title>How Much Data Are You Leaving Behind?</title>
		<link>http://feedproxy.google.com/~r/zecurion/qwAh/~3/iBaFQ-0m6as/</link>
		<comments>http://www.zecurion.com/server-software-blog/2011/12/how-much-data-are-you-leaving-behind/#comments</comments>
		<pubDate>Sun, 18 Dec 2011 23:50:35 +0000</pubDate>
		<dc:creator>tbradley</dc:creator>
				<category><![CDATA[Data Storage Security]]></category>
		<category><![CDATA[data protection]]></category>
		<category><![CDATA[Sophos]]></category>
		<category><![CDATA[USB keys]]></category>
		<category><![CDATA[Zecurion]]></category>
		<category><![CDATA[Zlock]]></category>
		<category><![CDATA[Zstorage]]></category>

		<guid isPermaLink="false">http://www.zecurion.com/server-software-blog/?p=416</guid>
		<description><![CDATA[The very things that make portable storage devices convenient for storing and transporting data also make them a greater risk for loss or theft. USB thumb drives hold gigabytes of information, yet fit in your pocket. You can easily have one fall out of your pocket in a taxi or on a train, and you [...]]]></description>
			<content:encoded><![CDATA[<p>The very things that make portable storage devices convenient for storing and transporting data also make them a greater risk for loss or theft. USB thumb drives hold gigabytes of information, yet fit in your pocket. You can easily have one fall out of your pocket in a taxi or on a train, and you are unlikely to miss it if someone &#8220;liberates&#8221; one from your possession.</p>
<p>Security vendor Sophos recently bought a number of USB thumb drives at auction that were left behind on trains. Sophos found that two-thirds of the <a href="http://nakedsecurity.sophos.com/2011/12/07/lost-usb-keys-have-66-percent-chance-of-malware/" target="_blank">USB thumb drives contained malware</a>&#8211;possibly suggesting they were intentionally &#8220;left&#8221; behind to be found and used by an unsuspecting victim. But, the 50 USB drives comprised nearly 140GB of potential lost data.</p>
<p>None of the USB keys was encrypted, and none of the USB keys contained any encrypted data. None. Sophos found all kinds of interesting data on the USB keys, including lists of tax deductions, minutes of an activists&#8217; meeting, school and University assignments, autoCAD drawings of work projects, photo albums of family and friends, a CV and job application, and software and web source code.</p>
<p>Don&#8217;t let that be your data. Make sure you have policies and <a href="http://www.zecurion.com/zlock.php" target="_blank">security controls in place</a> to control what data is allowed to be stored and transported on portable storage media, and make sure your <a href="http://www.zecurion.com/zserver.php" target="_blank">data is encrypted</a> so it is protected even if that media is lost or stolen.</p>
<img src="http://feeds.feedburner.com/~r/zecurion/qwAh/~4/iBaFQ-0m6as" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.zecurion.com/server-software-blog/2011/12/how-much-data-are-you-leaving-behind/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.zecurion.com/server-software-blog/2011/12/how-much-data-are-you-leaving-behind/</feedburner:origLink></item>
	</channel>
</rss>

