Downloads

You can engage with new prospects by sponsoring a download on Infosecurity (UK). Downloads provide users with the option to review the information as frequently as they need so it's an ideal way to share those white-papers. Our easy-to-use registration process provides you with a list of pre-qualified leads.

To find out more about how you can be involved with downloads on this website contact us today.

Download Now

Cloud Computing and Its Impact on Endpoint Management and Security

As enterprise end-user computing moves from LAN-centered to mobile to accessing information in the cloud, the focus of an ITorganization will shift from server availability and security to the endpoint. Over the course of this evolution, mobile endpoints work off the corporate network more and more frequently—and now, as the evolution continues, these endpoints obtain sensitive data and services from outside the network more and more frequently as well. For IT, this reality presents challenges regarding visibility, assessment, and remediation. How can you manage what you can’t see, and how can you fix problems you can’t identify? Fortunately, for ITorganizations trying to make their way in the cloud computing world, BigFix can help make systems and security management more straightforward and effective.
08 September 2010

Safe and Social: the Benefits and Risks of Web 2.0

Web 2.0 applications provide productive new tools for business—and some of the biggest security threats. According to a recent study, 45% of organisations were infected through Web surfing or Web 2.0 application use in the last 12 months. While many businesses rely on these online tools, most of them do not maintain adequate defences against Web threats.
01 September 2010

Anatomy of Insider Risk: Why You Could Be Your Worst Enemy

While organizations today are typically aware of the problems they face inside the firewall, the focus tends to be on malicious thieves and disgruntled employees, as opposed to the more common insider threat: well-meaning, but negligent, insiders. This white paper provides you with the four steps you need to minimise the risk from your well-meaning but negligent insiders.
12 July 2010

The in's and out's of content filtering

Dr. Eugene Schultz, Chief Technology Officer, Emagined Security presented at our webinar titled ‘Unifying inbound and outbound content control: Secure your organisation’s web and email traffic’. This is the presentation that he gave.
07 July 2010

Building Secure File Transfer Processes that Improve Security and Compliance

Protecting information assets–confidential intellectual property, sensitive customer data, financial information or private patient information–continues to be a top-of-mind issue for all enterprises.
05 July 2010

Data Protection and Compliance in Complex Environments

Today's businesses are often under the gun to meet certain data protection requirements. Unfortunately, many companies lack a cohesive strategy for assimilating, managing, and protecting that data. New regulatory requirements are often placed upon businesses with stiff penalties for noncompliance, with equally demanding deliverable dates. Global organizations are even more complex due to international laws. In Data Protection and Compliance in Complex Environments: The CSO Executive Series by information security expert and author Kevin Beaver, readers will learn how to clearly classify, protect, and report on critical data that requires the highest due diligence and protection efforts.
16 June 2010

Shopping for a Security File Transfer Solution for Retail

Retailers and merchant service providers are under increasing pressure to adhere to PCI DSS in an effort to avoid costly fines — and the even more detrimental loss of customer confidence that results from data leakage or data breaches.
11 May 2010

Case Study: File Transfer Solution To Protect Law Firm's Confidential Data

USB flash drives, removable disk drives and cell phones are making it easier than ever for employees who need to transfer large files – and harder than ever for companies to monitor and protect sensitive information.
11 May 2010

Cashing in on Banking Security and Compliance

With awareness of data breaches at an all-time high, banking institutions are working hard to implement policies and solutions that protect sensitive financial information along with their reputations and industry competitiveness.
10 May 2010

When Web 2.0 Becomes Security Risk 2.0

Hackers are manipulating the trusted nature of Facebook, MySpace and other social networks to launch exploits and spread malware attacks.
08 April 2010

Practical steps to ensure GCSX Code of Connection compliance and beyond

The GCSX Code of Connection is an important step along the journey to provide a secure infrastructure for public sector business
07 April 2010

PCI: Using Microsoft Active Directory to Address Payment Card Industry (PCI) Data Security Standard Requirements in Heterogeneous Environments

Learn how to simplify compliance reporting for stringent PCI DSS regulations by linking all access rights, privileges, and audit logs to a single, definitive Active Directory identity.
03 February 2010

Data Handling Procedures in UK Government

The Cabinet Office published the "Data Handling Procedures in UK Government", which highlights the need to restrict access to public sector data and encrypt data held on removable storage media such as CDs, USB keys and laptops.
01 February 2010

Demystifying IT Risk to Achieve Greater Security and Compliance

Managing IT risk is part of running any business these days. Regardless of what business you’re in, understanding IT risk can help you increase network security, reduce management costs and achieve greater compliance. Corporate leaders who fail to identify, assess and mitigate IT risk are setting themselves up for serious security breaches and financial losses down the road. And those leaders who think that managing IT risk is the job solely of the IT staff may be in for a big shock.
01 February 2010


18 January 2010

The Essential Series - Security Information Management

Maintaining information security is a multi-faceted operation that is best managed with a single comprehensive strategy rather than mix of tactics based on whatever point solutions are already deployed. Learn about the processes and technologies that support security information management (SIM) operations, as well as the business case for SIM.
15 December 2009

Aberdeen: Choosing and Consuming Managed Security Services

Learn the strategies, actions, and capabilities that Best-in-Class organizations employ and technologies they choose to obtain superior performance against various security performance metrics.
15 December 2009

Jon Ramsey Podcast Transcript

In this podcast transcript, Jon Ramsey, Chief Technology Officer at SecureWorks, addresses an array of security issues currently facing businesses, including security in the cloud, insider attacks, securing mobile devices and how to manage spam and malware.
15 December 2009

10-step Guide to Easy Data Loss Prevention

You know your organisation's data is its lifeblood, yet the protection of IP and sensitive information is all too often inadequate in today's networked world.
13 November 2009

The Latest ‘Blended Threats’

Blended threats are spam stealth attacks - moving undetected through your mail servers and blending in with all the other email - until they strike. They can compromise personal or corporate data, "recruit" computers into a network of bots, or initiate keystroke recording that collects passwords and other information.
13 November 2009

Oct. U.K. Threat Report

A new report based, provided by Eset, provides details on the changing threat landscape in the United Kingdom.
06 November 2009

Top 10 Global Threat Trends

This report, provided by Eset, offers an in-depth look at the top 10 malware threats through Sept.
06 November 2009

Validating the Business Benefits of Integrated Systems

IT organisations want to provide high-quality, low-cost technology services to business units as part of their basic mission. However, software complexity, manpower changes, mergers and acquisitions, and changing business requirements have complicated that mission. Trends such as managing mobility, virtualisation adoption, new and increasing compliance and governance requirements, and the need to modernise existing infrastructure add further complication to managing the IT environment.
27 October 2009

FTP: Enemy Within

Industry standards and government regulations such as Sarbanes-Oxley, PCI-DSS, HIPAA, Gramm-Leach-Bliley Act, and FISMA require organizations to constantly strengthen the protection of mission-critical information. With billions of dollars of annual losses attributed to security breaches, corporations are under pressure to eliminate non-secure legacy systems.
27 October 2009

Case Study: Continuous Compliance Across IT Systems

Capital Card Services provides credit card service management to financial and non-financial companies that desire to offer credit products and wish to outsource the necessary back office services.
22 October 2009

Configuration Control Proven Solution with Auditors and IT

More than 250 online sites entrust MarketLive to deliver stellar shopping experiences to their customers, necessitating both safeguards to protect cardholder information and compliance with industry regulations such as the Payment Card Industry’s Data Security Standard (PCI). With an increasing number of retailers facing PCI requirements, MarketLive decided to cre¬ate a strategic market advantage and become PCI compliant themselves.
22 October 2009

Managing the Process of PCI Compliance

Security threats are real-time and continual and changes occur overnight..
22 October 2009

Avoiding 7 Common Mistakes of IT Security Compliance

Compliance is a key driver for deployment of IT security controls, and many organisations are pursuing automation to improve accuracy and lower costs of fulfilling requirements. Automating controls is not just laudable – it’s essential for finding and fixing a myriad of vulnerabilities that enable criminals to breach enterprise IT, disrupt electronic business processes, and steal confidential business and customer data.
21 October 2009

PCi Compliance for Dummies

Compliance with the Payment Card Industry (PCI) Data Security Standard (DSS) is mandatory if your company stores, processes, or transmits payment cardholder data. This reference source, provided by Qualys, is all about understanding PCI and how merchants can comply with its requirements.
21 October 2009

Beyond PCI Checklists: Securing Cardholder Data with Enhanced File Integrity Monitoring

How do organisations pass their PCI DSS audits yet still suffer security breaches? Paying attention to PCI DSS checklists only partially secures the cardholder environment.
16 October 2009

ITCi White Paper: Challenges and Opportunities of PCI

Learn how to align PCI compliance with business processes for a more streamlined and reliable IT infrastructure with this whitepaper from the IT Compliance Institute.
16 October 2009

Every Man’s Guide to Combat Threats within Your Organization

With an increasing mobile force using a variety of wireless devices to access the Internet and download applications, confidential information becomes more easily accessible to hackers. This has complicated the job of information security professionals and raised awareness of how vulnerable mobile computing devices can be.
14 October 2009

Log Management - How to Develop the Right Strategy for Business and Compliance

From compliance requirements to data gathering for forensic purposes, companies have opened up the floodgates to log data. Based on audit findings and internal investigations, they have deployed expensive technologies and lots of personnel without a full understanding of what to log and why. Companies and organizations need a log management strategy that combines requirements from auditors with a process for the security team based on risk to gain better visibility into log data.
13 October 2009

Reversing the rise of the surveillance state: 11 Measures to Protect Personal Privacy and Hold Government to Account

At the Infosecurity Virtual Conference 2009, Eleanor Laing, Conservative MP, presented in our session, 'Infosecurity in government: What's going wrong, and how to fix it'. This download is the Conservative policy paper, titled Reversing the rise of the surveillance state.
29 September 2009

Advances in Endpoint Security

The past few years have witnessed several highly publicized cases of security breaches at major corporations. These high-profile incidents have emphasized the need to protect and control sensitive corporate information within the enterprise environment. As more data resides at the endpoint, administrators are being forced to defend a new architecture that has critical corporate resources dispersed around the globe.
01 September 2009

Endpoint Security: A Timely Warning for Today’s Economic Climate

The responses received in a recent IDC survey regarding corporate IT security give rise to serious concerns about the pace at which enterprises are responding (or are able to respond) to the growing security threat to the endpoints of their IT infrastructure. In particular, the responses show that enterprises appear to be falling behind in the following areas: HIPS usage, layered protection, mobility security.
01 September 2009

5 Ways to Reduce IT Audit Tax

Organizations oftentimes spend upwards of 50% more on compliance efforts than necessary. This is due to the inefficient deployment of resources and manpower to satisfy the burgeoning set of internal and external compliance and audit mandates. This whitepaper outlines five ways to streamline compliance efforts and thereby reduce the IT audit tax.
26 August 2009

Effective Insider Threat Management

White paper offers practical advice to ensure success.
18 August 2009


07 August 2009

Understanding the Critical Role of Device Management and Security in Your Business' Mobile Strategy

As businesses embrace mobility, IT professionals are facing new challenges. But gone are the days when stodgy IT departments would fight this business imperative. Most organisations today are simply trying to get smarter about how to manage and secure their increasingly mobile population and distributed assets.
22 July 2009

The Total Cost of Email: Putting a Price Tag on Your Email Environment

You can’t afford to ignore email archiving, security, internal policy or regulatory requirements, but can you afford to keep paying for it as multiple systems on top of your email system?
17 July 2009

Achieving Compliance with GSi Code of Connection (CoCo) with Lumension® Solutions

To develop the necessary trust and confidence within the Public Sector communities and between Government and the citizens, a common approach to risk management and the implementation of anInformation Assurance framework becomes increasingly important.
16 July 2009

New Data Storage Options & Services

The archiving market continues to expand as ‘cool’ vendors enter with new storage options and services that make archiving more cost-effective and ease the migration of older data.
17 June 2009

Portable Panic: Evolution of USB Insecurity

Once a mere novelty peripheral, USB storage devices are now as common as the mouse and keyboard. Analysts say by 2010 the market will have shipped 2.8 billion USB-enabled devices. Unfortunately, even as USB devices have evolved into useful storage media, they’ve also turned into a security nightmare for organisations.
05 June 2009

Turning the Spotlight on IT’s Dirty Little Secret: Securing the Common Point of Failure in IT Risk Controls

The rise of identity and access management has revolutionized how the enterprise defines a key domain of IT risk control. Access management has become a cornerstone of best practice in IT governance, risk and compliance control — except for the most important access of all, the privileged user for shared administrative accounts, and the embedded application identities found within applications, scripts and application servers.
01 June 2009

Document Security: A Guide to Securing Your Documents

When you talk about document security, there are many different ideas as to what security is actually wanted or needed. But the important question is, “what are you trying to achieve?”
01 June 2009

Outthink the Threat

eBook reports on how data-stealing malware is thwarting enterprise security, and offers solutions to combating these threats.
19 May 2009

Reducing the Cost of Achieving PCI Compliance with Lumension® Compliance and IT Risk Management

This whitepaper will examine PCI DSS and explain how Lumension® Compliance and IT Risk Management can help organizations reduce the cost of addressing compliance by streamlining and automating the IT audit process, unifying control and compliance frameworks, automating assessment and remediation processes, and enabling continuous monitoring of their compliance and IT risk management posture.
15 May 2009