Cybersecurity Assessments | Penetration Testing
By:
Cory Rey
January 14th, 2020
The Importance of the DMARC Record - Protecting Your Domain Against Spoofing Attacks These days, it has never been easier to establish an online presence, and having your own domain is a key component of that. However, with great domain ownership comes great responsibility, as do the problems that can follow your presence. As such, when managing individual DNS records, all users should stay up to date on the latest trends with regards to safeguarding their domain’s reputation, as well as all the persistent problems that come with online communication. Spoofing is one of those age-old issues when using e-mail as a contact protocol, and when it comes to spoofing protection, Sender Policy Framework (SPF) and Domain Keys Identified Mail (DKIM) are usually identified as a consistent “best practice” standard. However, they themselves are not enough to prevent modern spoofing techniques, even if both of these DNS records are both useful in their own way.
By:
RYAN MACKIE
August 16th, 2019
For those that were monitoring the wire, ISO/IEC 27001:2019 (ISO 27701) was released the week of August 5th. In draft form, it was previously labeled ISO/IEC 27552 (should you be wondering why that specific standard number has not been issued). You can obtain a copy of the published version here: https://www.iso.org/standard/71670.html.
By:
Schellman
July 15th, 2019
We are proud to announce that the HITRUST Alliance has appointed Schellman & Co. Principal Doug Kanney to the HITRUST CSF Assessor Council and Quality Subcommittee. Below is the official press release announcing the latest HITRUST CSF Assessor Council members (https://hitrustalliance.net/councils/):
FedRAMP | Penetration Testing | Federal Assessments
By:
KENT BLACKWELL
July 8th, 2019
Though Amazon’s Relational Database Services (RDS) can make hosting a database much easier, using them can also present new challenges, including some that crop up when you’re trying to scan against security benchmarks or meet compliance initiatives.