<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
<title>SECURITY</title>
	<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;tag&#47;1-security</link>
	<itunes:subtitle>White Paper Connect</itunes:subtitle>
	<itunes:summary>Network Security</itunes:summary>
	<description>Network Security</description>
	<language>en-us</language>
	<copyright>2012 </copyright>
	<itunes:owner>
		<itunes:name>White Paper Connect</itunes:name>
		<itunes:email>info@whitepaperconnect.com</itunes:email>
	</itunes:owner>
	<managingEditor>Alexander Higgins</managingEditor>
	<itunes:author>White Paper Connect </itunes:author>
	<image>
	<url>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;images&#47;wpc&#47;nologo.gif</url>
	<title>Stay&#32;up&#32;to&#32;date&#32;with&#32;RSS&#32;feeds&#32;</title>
	<link>http&#58;&#47;&#47;www.whitepaperconnect.com</link>
	</image>
	<itunes:image href="http&#58;&#47;&#47;www.whitepaperconnect.com&#47;images&#47;wpc&#47;nologo.gif" />
<itunes:category text="Health">
	<itunes:category text="Alternative Health"/>
</itunes:category>
	<pubDate>2:00:00 PM</pubDate>
	<lastBuildDate>Thu, 09 Feb 2012 20:09:00 GMT</lastBuildDate>
	<generator>ASP.NET CMS</generator>
	<itunes:explicit>no</itunes:explicit>
		<item>
			<title>Security&#32;Risk&#32;Management&#32;Case&#32;Study&#58;&#32;AT&#38;T</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;23-security_risk_management_case_study_att</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;23-security_risk_management_case_study_att</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;23&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;23-security_risk_management_case_study_att</comments>
			<itunes:keywords>ATT,&#32;Security,&#32;Network&#32;Security,&#32;Security,&#32;Telecommunications</itunes:keywords>
			<itunes:subtitle>Security&#32;Risk&#32;Management&#32;Case&#32;Study&#58;&#32;AT&#38;T</itunes:subtitle>
			<itunes:summary>Security&#32;Risk&#32;Management&#32;Case&#32;Study&#58;&#32;AT&#38;T</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">
		<b>
				<font face="Arial,Bold" color="#db002e" size="2">
						<p align="left">Security Risk Management Case: AT&amp;T Deploys Vulnerability Management Solution</p>
				</font>
		</b>
		<p align="left">Serving 40 million residential customers and another 4 million businesses, AT&amp;T operates the largest</p>
		<p align="left">telecommunications network in the world. For many consumers and businesses, AT&amp;T is a comprehensive provider of</p>
		<p align="left">network services that underpin the quality of their life and ensure the effective connectivity of their businesses. People</p>
		<p align="left">and organizations around the world have come to count on the reliability, high-availability and security of the AT&amp;T</p>
		<p>network for their voice and data communications.</p>
		<p>Download this White Paper now to learn more.</p>
&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;23-security_risk_management_case_study_att' title='Security&#32;Risk&#32;Management&#32;Case&#32;Study&#58;&#32;AT&#38;T' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;24-continuity_of_operations_strategies_in_the_federal_government</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;24-continuity_of_operations_strategies_in_the_federal_government</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;24&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;24-continuity_of_operations_strategies_in_the_federal_government</comments>
			<itunes:keywords>Cisco,&#32;Security,&#32;Government&#32;Security,&#32;Inter-Agency&#32;Cooperation</itunes:keywords>
			<itunes:subtitle>Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government</itunes:subtitle>
			<itunes:summary>Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">Inter-agency collaboration has an Achilles’ heel. The vulnerability is revealed when an employee is depending on another agency’s application and it suddenly disappears, or when a response team scrambles to establish an emergency voice and video conference with leaders, managers, and decision-makers in far-flung national global offices, all using different communications systems.<br /><br />To realize the promise of collaboration, federal agencies need to approach it in a way that achieves continuity of operations (COOP) programs while avoiding the perils of more potential points of failure.<br /><br />While collaboration unquestionably supports government transformation by helping agencies deliver services more effectively and efficiently, it simultaneously introduces new technology concerns related to resilience. That is, a disruption to one agency’s network, applications, communications, or workforce must not disrupt the operations of that agency or its partners.<br /><br />Learn more about how Cisco's Solutions help the Fedaral Government sustain inter-agenency cooperation by reading this whitepaper.&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;24-continuity_of_operations_strategies_in_the_federal_government' title='Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government&#32;Part&#32;2</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;25-continuity_of_operations_strategies_in_the_federal_government_part_2</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;25-continuity_of_operations_strategies_in_the_federal_government_part_2</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;25&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;25-continuity_of_operations_strategies_in_the_federal_government_part_2</comments>
			<itunes:keywords>Cisco,&#32;Security,&#32;Federal&#32;Government,&#32;Inter-agency&#32;cooperation</itunes:keywords>
			<itunes:subtitle>Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government&#32;Part&#32;2</itunes:subtitle>
			<itunes:summary>Part&#32;2&#32;in&#32;the&#32;three&#32;part&#32;series&#32;outlining&#32;how&#32;Cisco&#39;s&#32;Solutions&#32;help&#32;sustain&#32;federal&#32;interagency&#32;cooperation.</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">
		<p>At the heart of a growing collection of privacy regulations for<br />public and private sector organizations is the issue of public trust.<br />Storing mountains of information electronically and transmitting<br />it online multiplies the risks of inadvertently disclosing that<br />information. The consequences of loss of privacy for federal<br />agencies are grave, ranging from loss of citizen trust to<br />compromised homeland security. In acknowledgement of the<br />magnitude of the problem, government has implemented a spate<br />of privacy regulations discussed later in this report.</p>
		<p>It’s important to recognize that privacy does not become optional<br />in the event of disruption. Arguably, it becomes even more<br />important because decision-makers might need to collaborate<br />across organizational boundaries not ordinarily crossed during<br />normal operations. To ensure that information can flow between<br />organizations freely and expeditiously during emergencies or other<br />disruptions, federal agencies cannot afford to rely on timeconsuming<br />manual security processes requiring human oversight.<br />Rather, they need integrated security technologies that facilitate<br />rather than hinder inter-organizational collaboration. Therefore,<br />privacy and security are inextricable from federal government<br />continuity of operations (COOP) planning.</p>
		<p>Learn more about how Cisco's Solutions help the Fedaral Government sustain inter-agenency cooperation by reading this whitepaper.</p>
&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;25-continuity_of_operations_strategies_in_the_federal_government_part_2' title='Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government&#32;Part&#32;2' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government&#32;Part&#32;3</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;26-continuity_of_operations_strategies_in_the_federal_government_part_3</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;26-continuity_of_operations_strategies_in_the_federal_government_part_3</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;26&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;26-continuity_of_operations_strategies_in_the_federal_government_part_3</comments>
			<itunes:keywords>Cisco,&#32;Security,&#32;Federal&#32;Government,&#32;Inter-agency&#32;cooperation</itunes:keywords>
			<itunes:subtitle>Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government&#32;Part&#32;3</itunes:subtitle>
			<itunes:summary>Part&#32;3&#32;in&#32;the&#32;three&#32;part&#32;series&#32;outlining&#32;how&#32;Cisco&#39;s&#32;Solutions&#32;help&#32;sustain&#32;federal&#32;interagency&#32;cooperation.</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">
		<p>Paradoxically, continuity of operations (COOP) becomes most<br />challenging when it’s most urgent: on the battlefield, in<br />emergencies, and during disasters. In these situations, federal IT<br />groups must augment day-to-day COOP requirements —<br />resilience, security, and privacy-with additional attributes. These<br />include the ruggedness to continue operating despite adverse<br />environmental conditions or network events; the portability to send<br />actionable information to first responders or military personnel on<br />the move; and rapid deployment in temporary or mobile command<br />centers. Ensuring COOP in these conditions is required for<br />Department of Defense (DoD) network-centric operations (NCO)<br />and network-centric warfare (NCW) strategies as well as for<br />response to non-combatant emergencies and disasters.</p>
		<p>A Larstan Business Reports survey of 533 government IT<br />professionals revealed federal government agencies’ attitudes and<br />progress in integrating COOP into challenging military<br />combatant, military non-combatant, and civilian environments.<br />Most survey respondents acknowledged that ruggedness,<br />portability, and rapid deployment are crucial qualities for their<br />organizations to operate effectively, with 87% of intelligence or<br />military combatant, 75% of military non-combatant, and 78%<br />of civilian agencies agreeing or strongly agreeing. It’s unsettling<br />that 25% of civilian and 23% of military/non-combatant<br />agencies do not recognize the importance of rapid deployment as<br />crucial for effective operations. Events such as the explosion of<br />the Columbia space shuttle, natural disasters, hazardous materials<br />spills, building contamination, and disease outbreaks demand<br />rapid establishment of command centers and effective voice,<br />video, and data communication with mobile personnel called to<br />respond to the disruption.</p>
		<p>Learn more about how Cisco's Solutions help the Fedaral Government sustain inter-agenency cooperation by reading this whitepaper.</p>
&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;26-continuity_of_operations_strategies_in_the_federal_government_part_3' title='Continuity&#32;of&#32;Operations&#32;Strategies&#32;in&#32;the&#32;Federal&#32;Government&#32;Part&#32;3' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Security&#32;Threat&#32;Management</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;31-security_threat_management</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;31-security_threat_management</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;31&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;31-security_threat_management</comments>
			<itunes:keywords>security,&#32;threat&#32;management,&#32;STM</itunes:keywords>
			<itunes:subtitle>Security&#32;Threat&#32;Management</itunes:subtitle>
			<itunes:summary>Security&#32;Threat&#32;Management</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">This White Paper explores trends that are creating requirements for a proactive and automated approach to managing threats to critical information assets. It introduces the concept of Security Threat Management (STM) as a critical component of an integrated lifecycle management framework for effective security management. It demonstrates how a more strategic approach to managing information about security events can elevate the security posture of organizations while reducing the operational costs associated with security management. Finally, it describes the technological requirements for<br />implementing STM to achieve organizational security objectives in a rational manner.&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;31-security_threat_management' title='Security&#32;Threat&#32;Management' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Achieving&#32;Effectiveness&#32;in&#32;Information&#32;Protection</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;34-achieving_effectiveness_in_information_protection</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;34-achieving_effectiveness_in_information_protection</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;34&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;34-achieving_effectiveness_in_information_protection</comments>
			<itunes:keywords>security,&#32;ISO,&#32;Information&#32;Protection,&#32;information&#32;security</itunes:keywords>
			<itunes:subtitle>Achieving&#32;Effectiveness&#32;in&#32;Information&#32;Protection</itunes:subtitle>
			<itunes:summary>Achieving&#32;Effectiveness&#32;in&#32;Information&#32;Protection</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">Since the effort toward definition of information security practice began in the early 1990s, the issues and approaches have been continuously evolving. The ability to demonstrate effectiveness in information security is no longer an option, but an imperative in the interconnected ecosystem that enables business. The update to BS 7799 recently released by ISO/IEC provides an excellent foundation toward defining an Information Security Management System (ISMS). An understanding of the standard’s recommendations for demonstrating effectiveness of the ISMS is essential to realize the full potential of this definition and standardization of information security practice across businesses. The benefits of implementing measurement-based ISMS will only increase as demands for assurance of sound information management practices intensify.<br />Companies will be well-served to start now with an ISO/IEC 27001 based ISMS implementation.&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;34-achieving_effectiveness_in_information_protection' title='Achieving&#32;Effectiveness&#32;in&#32;Information&#32;Protection' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Preparation&#32;For&#32;9&#47;11&#32;Anniversary</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;35-preparation_for_911_anniversary</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;35-preparation_for_911_anniversary</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;35&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;35-preparation_for_911_anniversary</comments>
			<itunes:keywords>security,&#32;9&#47;11,&#32;counter&#32;terrorism,&#32;vulnerability&#32;management,&#32;</itunes:keywords>
			<itunes:subtitle>Preparation&#32;For&#32;9&#47;11&#32;Anniversary</itunes:subtitle>
			<itunes:summary>Preparation&#32;For&#32;9&#47;11&#32;Anniversary</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">On August 10, 2006, officials in London arrested 22 people that were alleged to be plotting to blow up 10 airplanes leaving Heathrow for destinations in the United States. On August 23, 2006, Northwest flight NO0042 from Amsterdam to Mumbai reversed course and returned to Amsterdam. 12 people on the flight were arrested due to suspicious behavior. These incidents serve as a stark reminder that extremists in terror networks are focused on attacking and debilitating the United States and other countries around the world.<br /><br />Analysis<br />The facts will continue to emerge from these cases and in the meantime we need to assume that the plots were real and could have had a substantial impact with respect to both human loss and the global economy.&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;35-preparation_for_911_anniversary' title='Preparation&#32;For&#32;9&#47;11&#32;Anniversary' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Choosing&#32;a&#32;Network&#32;Access&#32;Control&#32;Solution&#32;that&#32;is&#32;Right&#32;for&#32;your&#32;Network</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;44-choosing_a_network_access_control_solution_that_is_right_for_your_network</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;44-choosing_a_network_access_control_solution_that_is_right_for_your_network</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;44&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;44-choosing_a_network_access_control_solution_that_is_right_for_your_network</comments>
			<itunes:keywords>nac,&#32;network&#32;access&#32;control,&#32;end&#32;point&#32;security</itunes:keywords>
			<itunes:subtitle>Choosing&#32;a&#32;Network&#32;Access&#32;Control&#32;Solution&#32;that&#32;is&#32;Right&#32;for&#32;your&#32;Network</itunes:subtitle>
			<itunes:summary>Download&#32;this&#32;infomative&#32;whitepaper&#32;and&#32;learn&#32;how&#32;you&#32;can&#32;best&#32;prepare&#32;for&#32;choosing&#32;and&#32;implementing&#32;the&#32;network&#32;access&#32;control&#32;&#40;NAC&#41;&#32;solution&#32;that&#32;is&#32;right&#32;for&#32;your&#32;network.</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">Are you confused about Network Access Control? 

You are not alone. Today's enterprises are facing a growing challenge in securing access to their networks as the number of corporate mobile users and contractors is increasing exponentially. Adding to this challenge is the difficulty of integrating network security solutions into existing complex and diverse enterprise network infrastructures. 

Download this infomative whitepaper and learn how you can best prepare for choosing and implementing the network access control (NAC) solution that is right for your network. In addition, you'll learn: 

1. How to determine your organization's priorities and objectives for a NAC solution. 
2. The major differences between NAC solutions on the market today, including inline vs. out of band, client vs. clientless, etc., and the pros and cons of such approaches. 
3. How to conduct an onsite evaluation to determine the best solution for your enterprise. 
4. The implementation challenges faced by top enterprises. &nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;44-choosing_a_network_access_control_solution_that_is_right_for_your_network' title='Choosing&#32;a&#32;Network&#32;Access&#32;Control&#32;Solution&#32;that&#32;is&#32;Right&#32;for&#32;your&#32;Network' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Web&#32;Application&#32;Security&#32;-&#32;Continuous&#32;Testing&#32;of&#32;Production&#32;Web&#32;Applications</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;45-web_application_security__continuous_testing_of_production_web_applications</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;45-web_application_security__continuous_testing_of_production_web_applications</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;45&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;45-web_application_security__continuous_testing_of_production_web_applications</comments>
			<itunes:keywords>Continuous&#32;testing&#32;of&#32;Web&#32;applications,&#32;Web&#32;Application&#32;security,&#32;Vulnerability&#32;management,&#32;risk&#32;management,&#32;vulnerability&#32;assessment</itunes:keywords>
			<itunes:subtitle>Web&#32;Application&#32;Security&#32;-&#32;Continuous&#32;Testing&#32;of&#32;Production&#32;Web&#32;Applications</itunes:subtitle>
			<itunes:summary>With&#32;the&#32;unceasing&#32;onslaught&#32;of&#32;hackers&#8217;&#32;employing&#32;new&#32;methods&#32;to&#32;get&#32;to&#32;valuable&#32;customer&#32;data&#32;organizations&#32;simply&#32;must&#32;understand&#32;that&#32;securing&#32;Web&#32;applications&#32;is&#32;not&#32;a&#32;one&#32;time&#32;event&#32;but&#32;a&#32;discpline&#32;,&#32;a&#32;continuous&#32;process&#32;of&#32;testing&#32;&#38;&#32;re-testing</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">Web application security is a key top-of-mind concern for general managers, CISO’s, CIO’s and
security staff for businesses ranging from Fortune 100 multinationals to educational institutions.
Widespread data breaches and intellectual property thefts have left few organizations untouched
or unaware. Almost 70% of the vulnerabilities disclosed each month shows information security teams the importance of focusing on Web application security.&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;45-web_application_security__continuous_testing_of_production_web_applications' title='Web&#32;Application&#32;Security&#32;-&#32;Continuous&#32;Testing&#32;of&#32;Production&#32;Web&#32;Applications' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Enabling&#32;Security&#32;in&#32;the&#32;Software&#32;Development&#32;Life&#32;Cycle&#32;&#40;SDLC&#41;</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;46-enabling_security_in_the_software_development_life_cycle_sdlc</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;46-enabling_security_in_the_software_development_life_cycle_sdlc</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;46&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;46-enabling_security_in_the_software_development_life_cycle_sdlc</comments>
			<itunes:keywords>Application&#32;Security,&#32;Web&#32;application&#32;security,&#32;Penetration&#32;testing,&#32;vulnerability&#32;testing,&#32;risk&#32;assessment</itunes:keywords>
			<itunes:subtitle>Enabling&#32;Security&#32;in&#32;the&#32;Software&#32;Development&#32;Life&#32;Cycle&#32;&#40;SDLC&#41;</itunes:subtitle>
			<itunes:summary>The&#32;critical&#32;place&#32;to&#32;address&#32;security&#32;vulnerabilities&#32;is&#32;in&#32;the&#32;software&#32;development&#32;process.&#32;This&#32;white&#32;paper&#32;discusses&#32;the&#32;challenges&#32;of&#32;enabling&#32;security&#32;in&#32;the&#32;software&#32;development&#32;process&#32;and&#32;introduces&#32;Cenzic&#32;solutions&#32;to&#32;automate&#32;security</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">New security vulnerabilities are found almost daily. When they are, the affected software must be retrofitted with an appropriate patch while companies fend off the wrath of customers. Applications have become the most fertile ground for attackers to ply their trade -- seeking out the seemingly innocuous features and utilities in today’s complex systems that can give them unauthorized access. Each newly discovered vulnerability results in a frantic patch, halfway deployed, that potentially opens up another hole -- all taking days, weeks, or months to implement throughout an installed base. Meanwhile, new vulnerabilities continue to be found, making the game of catch-up never-ending. The critical place to address security vulnerabilities is in the software development process. This white paper discusses the challenges of enabling security in the software development process and introduces Cenzic’s solution to automate security quality assurance with its five-step methodology.&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;46-enabling_security_in_the_software_development_life_cycle_sdlc' title='Enabling&#32;Security&#32;in&#32;the&#32;Software&#32;Development&#32;Life&#32;Cycle&#32;&#40;SDLC&#41;' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Web&#32;Application&#32;Security&#58;The&#32;Truth&#32;About&#32;White&#32;Box&#32;Testing&#32;vs.&#32;Black&#32;Box&#32;Testing</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;47-web_application_securitythe_truth_about_white_box_testing_vs_black_box_testing</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;47-web_application_securitythe_truth_about_white_box_testing_vs_black_box_testing</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;47&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;47-web_application_securitythe_truth_about_white_box_testing_vs_black_box_testing</comments>
			<itunes:keywords>Web&#32;application&#32;security,&#32;Application&#32;security,&#32;Black&#32;box&#32;testing,&#32;Dynamic&#32;testing,&#32;White&#32;box&#32;testing,&#32;Securing&#32;web&#32;apps</itunes:keywords>
			<itunes:subtitle>Web&#32;Application&#32;Security&#58;The&#32;Truth&#32;About&#32;White&#32;Box&#32;Testing&#32;vs.&#32;Black&#32;Box&#32;Testing</itunes:subtitle>
			<itunes:summary>Web&#32;Application&#32;Security&#58;&#32;The&#32;Truth&#32;About&#32;White&#32;Box&#32;Testing&#32;vs.&#32;Black&#32;Box&#32;Testing</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">Security teams are dealing with this ominous challenge with a myriad of solutions, some highly ineffective. However, as the market matures, companies are applying somewhat effective, but not complete solutions like white box testing tools. Ultimately the challenges of architecture, API usage, and integration prevent white box testing tools from having a truly direct impact on the overall security of an application. It’s critical to understand that white box analysis tools do not directly find all the risks inherent in applications—period.
This paper explores the role of white box vs. black box testing. White box testing technologies have a definite but limited use and value. From a Web application security perspective it must be understood that significant blind spots come with white box testing. Ultimately white box testing is not sufficient to secure your applications: simply put organizations that rely solely on white box technologies will be exposed to vulnerabilities in their applications, thus making it an ineffectual method of testing real-world risks. This paper will demonstrate black box or dynamic testing is ultimately the appropriate solution for “truly” securing Web applications.&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;47-web_application_securitythe_truth_about_white_box_testing_vs_black_box_testing' title='Web&#32;Application&#32;Security&#58;The&#32;Truth&#32;About&#32;White&#32;Box&#32;Testing&#32;vs.&#32;Black&#32;Box&#32;Testing' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Testing&#32;for&#32;Cross-Frame&#32;Scripting</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;48-testing_for_crossframe_scripting</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;48-testing_for_crossframe_scripting</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;48&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;48-testing_for_crossframe_scripting</comments>
			<itunes:keywords>Security&#32;infrastructure,&#32;Financial&#32;applications&#32;security,&#32;Web&#32;application&#32;security,&#32;Phishing&#32;attacks,&#32;Cross-Frame&#32;Scripting,&#32;Vulnerability&#32;assessments,&#32;Risk&#32;management,&#32;penetration&#32;testing</itunes:keywords>
			<itunes:subtitle>Testing&#32;for&#32;Cross-Frame&#32;Scripting</itunes:subtitle>
			<itunes:summary>Phishing&#32;attacks&#32;are&#32;not&#32;new&#32;but&#32;they&#32;are&#32;increasing&#32;in&#32;frequency&#32;and&#32;sophistication.&#32;Organizations&#32;and&#32;financial&#32;institutions&#32;need&#32;to&#32;better&#32;manage&#32;their&#32;&#32;exposure&#32;to&#32;the&#32;Internet&#32;Explorer&#32;Cross&#32;Frame&#32;Scripting&#32;Vulnerability&#32;and&#32;its&#32;related&#32;threats.</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">For financial institutions, the risk of doing business on the Internet has recently changed somewhat dramatically as attackers increasingly target the users of such institutions directly, thus bypassing the hardened security infrastructures of these institutions. 

Electronic attackers and cyber criminals have strategically shifted the security playing field to one clearly in their favor - exploiting the lack of security knowledge on the part of the vast majority of users and a large footprint of potential vulnerabilities, tools, and code to leverage and exploit.

As customers, investors, and governments hold insecure companies accountable, these companies are being held liable for client side and user social engineering vulnerabilities. Being able to find and counter these threats must become a business imperative. This is especially true of financial institutions; people will not keep their money where they think it’s unsafe regardless of the technical specifics. The mere appearance of lax security could easily encourage otherwise satisfied customers to switch to a competitor that appears more secure.

As if the choice of playing field hadn’t already stacked the deck against the network’s defenders, the lack of tools, time and expertise make it a truly daunting situation indeed. None of this information is new, nor is the security cliché that there is no absolute security, but novelty doesn’t imply or confer truth or effectiveness – the only absolute in security is the need for diligence. Along these lines, Cenzic believes it can assist large institutions in their efforts increase security diligence in the area of Web application security, generally, as well as, specifically, in regards to the Cross-frame Scripting Vulnerability in Internet Explorer discovered by iDefensei.&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;48-testing_for_crossframe_scripting' title='Testing&#32;for&#32;Cross-Frame&#32;Scripting' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Introduction&#32;to&#32;Encryption</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;64-introduction_to_encryption</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;64-introduction_to_encryption</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;64&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;64-introduction_to_encryption</comments>
			<itunes:keywords>encryption,&#32;security,&#32;data&#32;loss,&#32;privacy,&#32;</itunes:keywords>
			<itunes:subtitle>Introduction&#32;to&#32;Encryption</itunes:subtitle>
			<itunes:summary>This&#32;paper&#32;covers&#32;what&#32;encryption&#32;is,&#32;why&#32;you&#32;would&#32;use&#32;it,&#32;and&#32;whether&#32;it&#32;actually&#32;does&#32;what&#32;it&#32;says&#32;on&#32;the&#32;tin.&#32;&#32;It&#32;also&#32;covers&#32;the&#32;applications&#32;it&#32;is&#32;most&#32;commonly&#32;used&#32;in&#32;and&#32;what&#32;type&#32;of&#32;encryption&#32;algorithm&#32;you&#32;should&#32;be&#32;considering.</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;64-introduction_to_encryption' title='Introduction&#32;to&#32;Encryption' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Introduction&#32;to&#32;Digital&#32;Rights&#32;Management&#32;-&#32;DRM</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;65-introduction_to_digital_rights_management__drm</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;65-introduction_to_digital_rights_management__drm</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;65&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;65-introduction_to_digital_rights_management__drm</comments>
			<itunes:keywords>drm,&#32;digital&#32;rights&#32;management,&#32;encryption,&#32;security,&#32;introduction,&#32;</itunes:keywords>
			<itunes:subtitle>Introduction&#32;to&#32;Digital&#32;Rights&#32;Management&#32;-&#32;DRM</itunes:subtitle>
			<itunes:summary>This&#32;paper&#32;covers&#32;the&#32;technology&#32;called&#32;Digital&#32;Rights&#32;Management&#32;or&#32;DRM,&#32;what&#32;it&#32;achieves&#32;and&#32;how&#32;this&#32;benefits&#32;your&#32;business.&#32;&#32;It&#32;also&#32;covers&#32;the&#32;use&#32;of&#32;encryption&#32;and&#32;cryptography&#32;in&#32;protecting&#32;and&#32;controlling&#32;digital&#32;content.</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;65-introduction_to_digital_rights_management__drm' title='Introduction&#32;to&#32;Digital&#32;Rights&#32;Management&#32;-&#32;DRM' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>PDF&#32;Security&#32;and&#32;Encryption</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;67-pdf_security_and_encryption</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;67-pdf_security_and_encryption</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;67&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;67-pdf_security_and_encryption</comments>
			<itunes:keywords>pdf&#32;security,&#32;pdf,&#32;security,&#32;encryption,&#32;drm,&#32;digital&#32;rights&#32;management,&#32;adobe,&#32;document&#32;control,&#32;document,&#32;</itunes:keywords>
			<itunes:subtitle>PDF&#32;Security&#32;and&#32;Encryption</itunes:subtitle>
			<itunes:summary>This&#32;paper&#32;covers&#32;the&#32;origins&#32;of&#32;Adobe&#32;PDF&#32;document&#32;security&#32;and&#32;encryption&#32;and&#32;pdf&#32;password&#32;cracks&#32;and&#32;hacks.&#32;&#32;Learn&#32;why&#32;PDF&#32;password&#32;security&#32;is&#32;not&#32;good&#32;enough&#32;to&#32;protect&#32;your&#32;PDF&#32;documents.</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;67-pdf_security_and_encryption' title='PDF&#32;Security&#32;and&#32;Encryption' class="articleLink">Read more.</a></div>]]></description>
		</item>
		<item>
			<title>Web&#32;security&#32;is&#32;within&#32;your&#32;reach.&#32;10&#32;ways&#32;to&#32;keep&#32;hackers&#32;in&#32;check&#32;and&#32;ensure&#32;safe&#32;web&#32;resources</title>
			<link>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;89-web_security_is_within_your_reach_10_ways_to_keep_hackers_in_check_and_ensure_safe_web_resources</link>
			<guid>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;89-web_security_is_within_your_reach_10_ways_to_keep_hackers_in_check_and_ensure_safe_web_resources</guid>
			<dc:creator></dc:creator>
			<itunes:author> </itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<comments>http&#58;&#47;&#47;www.whitepaperconnect.com&#47;comments.aspx&#63;&#38;contentid&#61;89&#38;returnpage&#61;&#47;browse&#47;content&#47;details&#47;89-web_security_is_within_your_reach_10_ways_to_keep_hackers_in_check_and_ensure_safe_web_resources</comments>
			<itunes:keywords>web&#32;security,&#32;intranet,&#32;website,&#32;bitrix,&#32;intranet&#32;portal,&#32;site&#32;manager,&#32;security&#32;framework</itunes:keywords>
			<itunes:subtitle>Web&#32;security&#32;is&#32;within&#32;your&#32;reach.&#32;10&#32;ways&#32;to&#32;keep&#32;hackers&#32;in&#32;check&#32;and&#32;ensure&#32;safe&#32;web&#32;resources</itunes:subtitle>
			<itunes:summary>Guidelines&#32;for&#32;minimizing&#32;risks&#32;associated&#32;with&#32;hostile&#32;web&#32;environments&#32;when&#32;deploying&#32;websites&#32;and&#32;intranet&#32;portals</itunes:summary>
			<description>  <![CDATA[ <div style="MARGIN-LEFT:10px;" class="articlebody">The white paper was authored by Marsel Nizam, Head of Web Security Development at Bitrix and supervisor of the development of the PRO+PRO™ security framework undergirding the company’s flagship products. The white paper is based on his 10+ years’ experience in web security and allows decision-makers to understand modern web-borne threats and ways to secure web assets by selecting proper web content management solution, as well as to get a plethora of useful security-related advice.&nbsp;<a href='http&#58;&#47;&#47;www.whitepaperconnect.com&#47;browse&#47;content&#47;details&#47;89-web_security_is_within_your_reach_10_ways_to_keep_hackers_in_check_and_ensure_safe_web_resources' title='Web&#32;security&#32;is&#32;within&#32;your&#32;reach.&#32;10&#32;ways&#32;to&#32;keep&#32;hackers&#32;in&#32;check&#32;and&#32;ensure&#32;safe&#32;web&#32;resources' class="articleLink">Read more.</a></div>]]></description>
		</item>
</channel>
</rss>

