Email Alerts
-
Penetration testing tutorial: Guidance for effective pen tests
This penetration testing tutorial contains essential tips to help solution providers uncover vulnerabilities in clients’ networks. Tutorial
-
Data protection services guide: A resource for solution providers
Data protection is a major concern for any customer company, regardless of what vertical they're in or the size of their company. This data protection guide will get solution providers prepared to work with customers on data protection. Learning Guide
-
Working with Firewall Builder
The first step of testing the firewall is to actually configure the firewall. This section of the chapter excerpt will focus on best practices for using and working with Firewall Builder, a software package designed to help administrators with config... Chapter Excerpt
-
Fujitsu Computer Products of America, Inc. Partner Program Checklist
Peruse the benefits that computing and communications vendor Fujitsu offers its resellers in this standardized partner program checklist. Partner Program Checklist
-
Unified threat management: An intro for solution providers
UTM technology offers a the one-stop shop for a combination of security needs. The integration of antivirus, firewall, antispam and intrusion detection/prevention features in a single appliance yields simplified management and potentially lower cost... Feature
-
Top security tips for solutions providers
Get the top five security tips of the first half of 2008, as chosen by SearchSecurityChannel.com readers. Top Tips
-
Check up on IT security services for your clients
Use these easy-to-scan checklists to get a valuable overview of key IT security topics in the minimum amount of time. Channel Checklist
-
Data security: Alternatives to data leak prevention
Data leak prevention technology has its drawbacks. Fortunately, these weaknesses can be addressed with more established technologies such as encryption and data rights management. Feature
-
XPath, command and directory traversal injection attacks
Learn about XPath, command and directory traversal injection attacks and how they might affect your customer's network. Book Excerpt
-
Testing for injection attacks
Unless properly tested for, exposure to injection attacks can be more apparent in your cilents' ntworks than you think. Learn how to test for vulnerability to injection attacks as we wrap up this chapter on common injection attacks. Book Excerpt
- See more Essential Knowledge on Threat management and prevention
-
Survey results: Customers need IT GRC software and security services
A recent survey points out opportunities for solution providers to partner with GRC vendors, providing much-needed security portions of GRC projects. News | 01 Sep 2011
-
NitroSecurity partners to get new Nitro SIEM incentives
In an effort to boost Nitro SIEM sales, NitroSecurity software partners get increased margins for new deals and free certification-focused training. News | 25 Jul 2011
-
At WPC 2011, content sparse for Microsoft security partners
Microsoft is pushing cloud services during its Worldwide Partner Conference 2011, leaving IT security to its OEMs and expo exhibitors. News | 13 Jul 2011
-
Symantec acquisition of Clearwell will improve data security products
Symantec has announced it will acquire Clearwell and inject its data classification and security features into Clearwell’s e-discovery products. News | 23 May 2011
-
Customers in no rush to buy virtualization security products, services
More customers are implementing virtualization, but are opportunities increasing around virtualization security products? Observers say not just yet. News | 12 May 2011
-
Titus security launches resource portal for solution providers
The security software vendor will use the portal to offer sales support to its U.S. and international resellers. News | 14 Apr 2011
-
Channel consolidation predicted, number of security VARs to decline
IT security vendors forecast security channel consolidation in the coming year, but a select few security VARs will survive and even grow. Article | 07 Jan 2011
-
Is Forefront Endpoint Protection 2010 a good fit for your customer?
Microsoft FEP 2010 is now available for email filtering and antimalware protection of Windows PCs. It's the right choice in some situations, but consider alternatives too. Article | 04 Jan 2011
-
Visa issues payment application security best practices for integrators, resellers
New guidance helps avoid configuration issues, improve secure software development and help merchants securely install payment system software. Article | 26 Aug 2010
-
Intel acquisition of McAfee raises 'value-add' questions
Resellers are worried that by McAfee products' eventual integration across Intel's chip and processor lines, customers will have fewer product choices and resellers will be forced to accept lower margins. Article | 19 Aug 2010
- See more News on Threat management and prevention
-
Biometric authentication methods: Comparing smartphone biometrics
Biometric authentication helps ensure only authorized smartphone users can access a network. David Jacobs weighs the pros and cons of three methods. Tip
-
Using DMARC to improve DKIM and SPF email antispam effectiveness
DMARC aids the DKIM and SPF protocols that help keep spam out and let legitimate emails in. David Jacobs explains how. Tip
-
HIPAA security checklist: 10 services your customers need
HIPAA compliance services can lead to solid business growth for solution providers. Kevin McDonald's HIPAA security checklist has 10 ways to begin. Tip
-
Q&A: ESET CEO on Sophos problem, state of antivirus and ESET resellers
In this Q&A, Richard Marko, CEO of ESET, talks about antivirus products, ESET’s reseller strategy, and the criticism recently aimed at Sophos. Tip
-
CSP security: Penetration testing public cloud service providers
Pen testing is vital for customers who entrust their applications to a cloud. Dave Shackleford explains how to test public cloud service providers. Tip
-
Deploy network forensics tools and services for incident response
For incident response, solution providers may resell forensics tools or offer forensics as a managed service. Lisa Phifer compares the options. Tip
-
Guide customers safely into the cloud with a cloud computing audit
As customers move applications or data to the cloud, they may turn to you for a cloud audit. Expert Jim Kelton explains what you’ll need to succeed. Tip
-
Six steps to a great information security risk assessment report
Reporting the results of a risk assessment can be tricky. One wrong step can dilute all your hard work. Here are six steps in the right direction. Tip
-
How to add email security awareness training to your service portfolio
Email security awareness training for your customers’ employees is a natural extension to email and Web filtering products. David Jacobs details why. Tip
-
How to do penetration testing: Overcoming problems and concerns
A lot can go wrong with pen testing. Dave Shackleford discusses potential problems and how to fix them, or avoid them altogether. Tip
- See more Tips on Threat management and prevention
-
What are the best data leakage prevention strategies for my clients?
Data leakage prevention (DLP) has become a feature of much larger information-centric lifecycle management suites of large companies with expansive portfolios. Learn how to choose the right DLP technology and technology partner is critical for servic... Ask the Expert
-
What is the future of antivirus or antimalware software?
Antivirus software has become antimalware software, and as such it has become more popular than ever. However, to address future threats it will have to evolve to encompass distributed and multi-tiered deployment from the "cloud" to the endpoint. Ask the Expert
-
Security for mobile broadband
While some SMBs are not securing their mobile broadband, there is good reason to do so, even if a customer has only a small amount of data to protect. Ask the Expert
-
Spyware removal from computers
The accidental download of a malicious file can ruin your client's computer. Learn what steps to take to ensure effective spyware removal. Ask the Expert
-
Malware removal without antivirus software
Attempting to remove malware from your customers' systems without using antivirus tools typically isn't worth the effort. Ask the Expert
-
Blade server security on a storage area network (SAN)
VARs should understand why blade chassis can actually add to blade server security, and why using PXE security best practices will harden your customers' blade server. Ask the Expert
-
Blade server security hardware advice
VARs can learn why blade server security issues are basically the same as with rack servers or standalone servers. Ask the Expert
-
Cross-site scripting vulnerability penetration testing
Russell Dean Vines discusses how to test a Web application for cross-site scripting (XSS) vulnerabilities, how to perform penetration testing for XSS and what type of code would exhibit XSS threats. Ask the Expert
-
Should hotfix testing be performed by the QA department or by support?
This expert response assigns responsibility for patch testing and discusses the benefits of implementing scheduled patch releases and using different patch management policies for end user and server systems. Ask the Expert
-
Options for a former black hat gone ethical
Can a former black hat ever really reform? Don Donzal tackles tough ethical questions in this expert response, suggesting community service and mentorship for black hats looking to erase a questionable past. Ask the Expert
- See more Expert Advice on Threat management and prevention
-
keyword stuffing
Keyword stuffing is the practice of inserting a large number of keywords into Web page content and meta tags in the attempt to artificially increase the page's ranking in search results. Definition
-
database activity monitoring (DAM)
Database activity monitoring (DAM) systems monitor and record activity in a database and then generate alerts for anything unusual. Definition
-
Channel Chat: Brocade discusses channel partner programs
Barbara Spicek, VP of global channels at Brocade, discusses advances in Brocade’s channel partner programs like cloud enablement, partner specializations and IPv6 ready solutions. Podcast
-
Podcast: Tips for selling data leakage prevention solutions
Towerwall CEO Michelle Drolet discusses aspects of selling data leakage prevention solutions, including data classification and comparing DLP vendors. Podcast
-
Podcast: IT security challenges and endpoint security vendor selection
In this podcast, the CTO of PC-Plus Technologies discusses the company’s biggest security problem, the vendors it supports and why, and its use of events to generate business. Podcast
-
Podcast: Network firewall FAQs for resellers
Check out Chris Clements' answers to these common network firewall questions. Learn more about different types of network firewalls, making the business case for network firewalls and targeting the right network firewall features for specific clients... Podcast
-
Biometric authentication methods: Comparing smartphone biometrics
Biometric authentication helps ensure only authorized smartphone users can access a network. David Jacobs weighs the pros and cons of three methods. Tip
-
Using DMARC to improve DKIM and SPF email antispam effectiveness
DMARC aids the DKIM and SPF protocols that help keep spam out and let legitimate emails in. David Jacobs explains how. Tip
-
HIPAA security checklist: 10 services your customers need
HIPAA compliance services can lead to solid business growth for solution providers. Kevin McDonald's HIPAA security checklist has 10 ways to begin. Tip
-
Penetration testing tutorial: Guidance for effective pen tests
This penetration testing tutorial contains essential tips to help solution providers uncover vulnerabilities in clients’ networks. Tutorial
-
keyword stuffing
Keyword stuffing is the practice of inserting a large number of keywords into Web page content and meta tags in the attempt to artificially increase the page's ranking in search results. Definition
-
Q&A: ESET CEO on Sophos problem, state of antivirus and ESET resellers
In this Q&A, Richard Marko, CEO of ESET, talks about antivirus products, ESET’s reseller strategy, and the criticism recently aimed at Sophos. Tip
-
CSP security: Penetration testing public cloud service providers
Pen testing is vital for customers who entrust their applications to a cloud. Dave Shackleford explains how to test public cloud service providers. Tip
-
Deploy network forensics tools and services for incident response
For incident response, solution providers may resell forensics tools or offer forensics as a managed service. Lisa Phifer compares the options. Tip
-
Guide customers safely into the cloud with a cloud computing audit
As customers move applications or data to the cloud, they may turn to you for a cloud audit. Expert Jim Kelton explains what you’ll need to succeed. Tip
-
Six steps to a great information security risk assessment report
Reporting the results of a risk assessment can be tricky. One wrong step can dilute all your hard work. Here are six steps in the right direction. Tip
- See more All on Threat management and prevention
About Threat management and prevention
Read tips on information security threats and threat management, mitigation and prevention for security service providers, consultants and value-added resellers (VARs). You'll find how-tos and best practices on identifying and mitigating the threats to information security on the computer, network and WLAN. Learn how to defend business networks against hackers and hacking tools, data leaks, data theft, spam, viruses and other malware, Web threats and wireless security threats.
Channel Strategies for the CIO