Feeds

Why Morgan Stanley had to pay that $15m email fine

Two papers about IT security

  • alert
  • submit to reddit

Securing Web Applications Made Simple and Scalable

And so to Reg Whitepapers to fossick this week for security nuggets. We struck a couple of good ones.

Email as Evidence

In 2006 Morgan Stanley agreed to pay a $15m fine to the Securities and Exchange Commission for repeatedly failing to produce emails during the course of investigations. Oh dear. This whitepaper, commissioned by Mimecast, argues that organizations that archive email in a "fractured" environment risk losing control and may struggle to produce evidential-quality email evidence.

This is a good read for anyone concerned with the management of email. The author, Stewart Room, is a lawyer and among other things, the president of the National Association of Data Protection Officers. He has also written a couple of text books. ‘Data Protection and Compliance in Context’ (2006), ‘Email: Law, Practice and Compliance’ (2008).

On-demand security audits and vulnerability management

This is a long-ish whitepaper of two halves.

The first half outlines the value of the various approaches to network security: virus detection, firewalls, intrusion detection systems (IDS) and vulnerability management. There is also a comparison of the various approaches to vulnerability management. The thesis from IT security firm Qualys is that only on-demand security audits and vulnerability management provide a proactive approach, identifying network and device vulnerabilities before networks are compromised. The second half describes Qualys’s security solutions. ®

Mobile application security vulnerability report

More from The Register

next story
HIDDEN packet sniffer spy tech in MILLIONS of iPhones, iPads – expert
Don't panic though – Apple's backdoor is not wide open to all, guru tells us
NEW, SINISTER web tracking tech fingerprints your computer by making it draw
Have you been on YouPorn lately, perhaps? White House website?
LibreSSL RNG bug fix: What's all the forking fuss about, ask devs
Blow to bit-spitter 'tis but a flesh wound, claim team
Black Hat anti-Tor talk smashed by lawyers' wrecking ball
Unmasking hidden users is too hot for Carnegie-Mellon
Manic malware Mayhem spreads through Linux, FreeBSD web servers
And how Google could cripple infection rate in a second
NUDE SNAPS AGENCY: NSA bods love 'showing off your saucy selfies'
Swapping other people's sexts is a fringe benefit, says Snowden
Own a Cisco modem or wireless gateway? It might be owned by someone else, too
Remote code exec in HTTP server hands kit to bad guys
prev story

Whitepapers

Reducing security risks from open source software
Follow a few strategies and your organization can gain the full benefits of open source and the cloud without compromising the security of your applications.
Consolidation: The Foundation for IT Business Transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.
Application security programs and practises
Follow a few strategies and your organization can gain the full benefits of open source and the cloud without compromising the security of your applications.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.
Consolidation: the foundation for IT and business transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.