How can I block CDRW/DVDRW and USB drives from being used in our Windows XP machines across the entire network?
I need some advice from other security experts. I was recently hired to work for a small company where our data and infrastructure is at a managed hosting facility. The hosting service has a SAS 70 that is regularly audited. My company in the past relied – almost solely – on the managed service security [...]
Is it possible to scan our active directory and see if people have weak passwords? We have upped the password policy but what about for users that already have passwords and are not scheduled to changed them yet?
What is your limit for how much of your information security program you outsource to contractors? Is it better to develop information security expertise solely in your employees or is it acceptable to outsource to an external expert? Hiring security service providers and contractors to manage portions of your enterprise information security program (incident response, [...]
What are the pros and cons of application data security versus network security? Which do you recommend devoting more budget funds to?
Just wondering if it is generally a policy to disable macros from Word, etc. Is there a safe macros list or should they all be disabled? How would I go about doing this across the network?
We’ve gotten your opinions on network security from the hardware and software side, but now we want to know what you’re doing for compliance. From what your compliance policies are to the creative ways you raise awareness about those policies, share your stories and you might get 100 knowledge points in time for the final [...]
Please can anyone offer any guidance or know what are the best products in the market place for encrypting/securing corporate laptops, preferably the solution should include hard disk wiping.
Do you have a checklist or a favorite set of server hardening tools in your arsenal? Share with us what you think are the most important considerations when creating a server security baseline. Be sure to include what hardware and software you’re using! Helpful suggestions and innovative ideas will you earn you a whopping 100 [...]
Is there free encryption software for our corporate laptops? Does it offer remote wiping capabilities?
Can we prevent command prompt access on all servers except for when run by a domain administrator?
How can we block users from any remote connections to other computers from our office or laptops? We want to block logmein, remote desktop etc for our windows 7 machines.
Can we prevent computers that do not have up to date antivirus definitions or no antivirus at all from connecting to the network or Internet? We are using Mcafee 871 with an EPO server. Can this be done?
Can we block activesync from being used on the network? Desktops are running Windows XP SP3 and we do not want contacts and data transferred to users personal devices for secrecy reasons.
Can we monitor and filter our wireless network? Are there free tools for this? We want to block porn and spyware sites.
I need to block instant messenger on all networked machines. Can this be done in a Windows Server 2003 environments? Is there a step by step guide out there?
Can I block the use of USB drives or flash drives or any removable media on our active directory network across the board. We are using group policy but I do not know how to configure it.
I’m a recent hire, and now I’ve been asked to clean up our PIX/ASA rules. Aside from the show access-list, is there a command that can help me determine the last time the rule was accessed? Any other tips when cleaning up rule clutter?
We are running Comcast Fiber between sites. I was wondering what the best practice is for using Layer 2 or Layer 3 across the link. We current use both. Are there security reasons for doing one versus the other? Also interested in hearing general thoughts on it.
What measures do you/your organization take to educate employees on network security policies? Do you include this information in new hire training? Do you hold special training? Does your include any unique or particular provisions?





