Sister CISA CISSP:

February, 2010

1

February 26, 2010  7:25 PM

Health Care Breaches and Third Party Associates

Arian Eigen Heald Arian Eigen Heald Profile: Arian Eigen Heald

The Department of Health and Human Services has posted a list of the covered entities, (i.e., those that come under HIPAA regulations) that have reported health information data breaches...

February 25, 2010  6:39 PM

Universities and Colleges Are Being Hammered

Arian Eigen Heald Arian Eigen Heald Profile: Arian Eigen Heald

I've visited any number of schools, higher education and universities in the last five years that have been suffering from the "Open Campus" syndrome. Fundamentally, it's an attitude on the part of students, teachers/professors and management that their environment won't be "really" damaged by...


February 19, 2010  5:23 PM

Not the Kind of “Buzz” Google Wants – Check Your Gmail

Arian Eigen Heald Arian Eigen Heald Profile: Arian Eigen Heald

About ten days ago, a splash page appeared when I went to log into my Gmail, indicating I could click the button labeled “Sweet! Check out Buzz” or “Nah, go to my inbox." I just said "Nah" and went to my inbox, thinking no more about it. Sometime later, I noticed a little icon at the top of...


February 17, 2010  2:58 AM

Beware the “Smoker Door!”

Arian Eigen Heald Arian Eigen Heald Profile: Arian Eigen Heald

When doing a physical security audit, there's always the "security by walking around" phase. I find PCs with no screensavers, passwords under keyboards and keys labeled "server room." Consider the cigarette smoker. Every company has them. (Better, by far, than the cigar smokers, in my opinion.)...


February 15, 2010  6:33 PM

Quantum Shifts in 2009

Arian Eigen Heald Arian Eigen Heald Profile: Arian Eigen Heald

I'm sure you've noticed the usual plethora of "studies" about 2009 erupting from various security vendors. Some are good, some are barely concealed pitches for product. Looking over about a dozen of the above, I gleaned some significant facts that might be useful to both admins and...


February 10, 2010  7:47 PM

Printers & Copiers & Data Theft, Oh My

Arian Eigen Heald Arian Eigen Heald Profile: Arian Eigen Heald

It's worthwhile to consider the printers, copiers and scanners (or all 3 together - multi-function devices) on your network. How many of your printers allow open access? Open ports? Can I telnet to your printers? Why worry? Why bother? Well, if you google

  Bookmark and Share     0 Comments     RSS Feed     Email a friend


February 8, 2010  2:21 PM

More Adventures In Auditing

Arian Eigen Heald Arian Eigen Heald Profile: Arian Eigen Heald

Not long ago (needless to say I can't mention time or client name) I was asked by a medium-sized business to investigate some problems they were having with spam, malware, and "weird stuff" on their network. Their network contained at least 200 users spread out over multiple sites. I asked to...


1

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to: