We use cookies, including third-party cookies from Google to serve personalized ads through AdSense, to operate this site and understand how it is used. By continuing to browse, you accept this use. See our Privacy Policy and Terms of Use for details, including how to opt out of personalized advertising.
Accept
SmartData CollectiveSmartData Collective
  • Analytics
    AnalyticsShow More
    chatgpt image jul 21, 2026, 04 34 30 pm
    4 Core Benefits of Predictive Maintenance after Vibration Analysis
    10 Min Read
    How Does Data Mining Boost Customer Satisfaction in Logistics? Harnessing Analytics for Results -- AI-generated illustration
    How Does Data Mining Boost Customer Satisfaction in Logistics? Harnessing Analytics for Results
    11 Min Read
    chatgpt image jul 13, 2026, 04 23 45 pm
    How Data Analytics Helps Companies Improve User Engagement
    19 Min Read
    chatgpt image jul 13, 2026, 03 59 46 pm
    How Data Analytics Improves Multi-Location Search Strategies
    10 Min Read
    cybersecurity efforts
    How Behavioral Analytics and AI Are Redefining Cybersecurity for Boca Raton Businesses
    14 Min Read
  • Big Data
  • BI
  • Exclusive
  • IT
  • Marketing
  • Software
Search
© 2008-25 SmartData Collective. All Rights Reserved.
Reading: Enhance your security posture
Share
Notification
Font ResizerAa
SmartData CollectiveSmartData Collective
Font ResizerAa
Search
  • About
  • Help
  • Privacy
Follow US
© 2008-23 SmartData Collective. All Rights Reserved.
SmartData Collective > Uncategorized > Enhance your security posture
Uncategorized

Enhance your security posture

BobGourley
BobGourley
4 Min Read
Enhance your security posture
Photo by geralt on Pixabay (https://pixabay.com/photos/woman-businesswoman-business-3441011/)
SHARE

With this post I would like to provide some personal thoughts on the key things organizations should be doing to enhance security, privacy and functionality of their IT.  This includes some specific recommendations for security solutions, including solutions I’m on advisory boards for (read the disclaimer).  So I better caveat this by saying “please use your own judgement!”   I associate myself with firms because I believe they are world class best and that is why I’ve mentioned the specific capabilities here.

With that, here are my views of the top five things every governmental organizations should be doing to reduce risk in cyberspace:

1.  Adopt an fully implement a program centered around the Consensus Audit Guidelines.  Details on this effort are at http://www.sans.org/cag This program is a well coordinated, well thought out list of controls and metrics that every organization should have in place.  It includes 15 controls subject to automated measurement and validation and five other controls that are not supported by automated measurement.  The combined 20 controls will let organizations measure and continually improve their security and functionality.

2.  Understand you can’t do it alone.  Stopping the threats today is a constant struggle, and even the most secure enterprises are getting penetrated (case in point, consider the US intelligence community and what a single criminal insider was able to do).  All organizations, of all sizes, need to find the right organizations to network with and the right cyber defenders to coordinate with when times get tough.  In general, these are groups like :

More Read

The Big Data Contrarians: New LinkedIn Big Data Community
The Big Data Contrarians: New LinkedIn Big Data Community
Integration of this blog with twitter.com
Storage goes node to node
Don’t do list for 2010
Kosmix: I’m Impressed
  • Carnegie Mellon CERT
  • US CERT
  • US Cyber Command
  • DISA’s IA team
  • FBI (and the IC3).
  • DoD Cyber Crime Center (DC3)
  • DoE CIRC
  • SANS

A lesson I’ve learned the hard way, multiple times, is that coordination with groups like this should be done before you need to.  When the crisis comes you should already know who to plug in with.

3.  Establish deep packet inspection multi-function capabilities at the entry points to your networks.  My favorite means to establish this capability is with the Cloudshield telco packet server.  Cloudshield’s capabilities address many enterprise challenges including threat from external sources plus threats of data loss by the use of an open, programmable network platform.

4.  The greatest source of threats into the enterprise IT systems today is via the browser. Shutting down this avenue of attack while keeping your users on the net is a key requirement. Web-borne malware comes in via the browser and well resourced criminal groups are ensuring they will always be able to find a way in. The solution here: Invincea browser protection.  Invincea protects users against web-borne threats to eliminate these risks.  See their blog for more info.

5.  Maintain control of the state of your endpoint devices by use of automated, persistent security readiness.  Applying endpoint security automation continuously remediates issues on user desktops so infections/penetrations/trojans/problems are found fast and the computer’s state is returned to its previous working status.  The most scalable, robust solution in this space is Trumfant.  Use of Triumfant is a key component of defense in depth but also a significant contribution to IT O&M and readiness.  Triumfant will reduce the amount of trouble tickets your help desk receives, stuff just works better.  See their blog for more info.

Above I mentioned 20 controls, 9 coordinating organizations, and three specific technologies.  But there are far more technologies of interest, many of which are reviewed and described in detail on our site at http://ctolabs.com

TAGGED:best practicesCyber Security
Share This Article
Facebook Pinterest LinkedIn
Share

Follow us on Facebook

Latest News

How Digital Knowledge Repositories Facilitate Self-Directed Research and Information Discovery -- AI-generated illustration
How Digital Knowledge Repositories Facilitate Self-Directed Research and Information Discovery
Exclusive News
7 MDR Providers Combining Offensive Security Testing With 24/7 Monitoring -- AI-generated illustration
7 MDR Providers Combining Offensive Security Testing With 24/7 Monitoring
Exclusive IT Security
The Information Governance Practices That High-Demand Social Work Roles Require -- AI-generated illustration
The Information Governance Practices That High-Demand Social Work Roles Require
Data Management Exclusive Policy and Governance Security
8 MCP Tools for Market and Consumer Intelligence Workflows -- AI-generated illustration
8 MCP Tools for Market and Consumer Intelligence Workflows
Artificial Intelligence Exclusive

Stay Connected

1.2KFollowersLike
33.7KFollowersFollow
222FollowersPin

You Might also Like

Change Management  and Data Governance
Uncategorized

Change Management and Data Governance

3 Min Read
Machine Learning Minimizes Fraud Risks of Online Payments
Data ManagementExclusiveMachine LearningPolicy and GovernanceRisk Management

Machine Learning Minimizes Fraud Risks of Online Payments

5 Min Read
Cyber Security Threats
PrivacySecurity

Small Business Cyber Security Threats You Need to Know About

12 Min Read
Cyber Insurance Could Keep Your SMB Afloat Post Cyber Attack
Security

Cyber Insurance Could Keep Your SMB Afloat Post Cyber Attack

5 Min Read

SmartData Collective is one of the largest & trusted community covering technical content about Big Data, BI, Cloud, Analytics, Artificial Intelligence, IoT & more.

Chatbots and SEO: How Can Chatbots Improve Your SEO Ranking?
Chatbots and SEO: How Can Chatbots Improve Your SEO Ranking?
Artificial Intelligence Chatbots Exclusive
How To Get An Award Winning Giveaway Bot
How To Get An Award Winning Giveaway Bot
Big Data Chatbots Exclusive

Quick Link

  • About
  • Contact
  • Privacy
Follow US
© 2008-26 SmartData Collective. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?