<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>Armadillo</title>
	<atom:link href="http://www.armadillouk.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.armadillouk.com</link>
	<description>Armadillo Managed Services Ltd</description>
	<pubDate>Tue, 24 Apr 2012 14:47:17 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.5</generator>
	<language>en</language>
			<item>
		<title>ContextIS Release New Whitepaper: Crouching Tiger, Hidden Dragon, Stolen Data</title>
		<link>http://www.armadillouk.com/news/contextis-release-new-whitepaper-crouching-tiger-hidden-dragon-stolen-data/</link>
		<comments>http://www.armadillouk.com/news/contextis-release-new-whitepaper-crouching-tiger-hidden-dragon-stolen-data/#comments</comments>
		<pubDate>Tue, 24 Apr 2012 14:40:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1726</guid>
		<description><![CDATA[Heathrow, 24th April 2012
Context Release New Whitepaper: Crouching Tiger, Hidden Dragon, Stolen Data 
Context is keen to share its ideas and knowledge with clients and those interested in Information Security whilst reporting on news and current developments in the field.
There have been many media reports in recent years about cyber attacks on governments and a [...]]]></description>
			<content:encoded><![CDATA[<p style="padding: 10px 2%;"><strong>Heathrow, 24th April 2012</strong><br/><br />
<span style='color:#F31313'><strong>Context Release New Whitepaper: Crouching Tiger, Hidden Dragon, Stolen Data</strong></span> </br><br />
<span style='color:#006699'><strong>Context is keen to share its ideas and knowledge with clients and those interested in Information Security whilst reporting on news and current developments in the field.</strong></span></p>
<p style="padding: 10px 2%;">There have been many media reports in recent years about cyber attacks on governments and a variety of private sector companies. The rather ambiguous term ‘Advanced Persistent Threat’ (‘APT’) is widely used to describe any attack which appears to have compromised computers in these companies or organisations, regardless of the source or purpose of the attack. We prefer simply to call them ‘targeted attacks’ and leave marketing terms to one side. This paper is not concerned with the technical aspects of targeted attacks, but seeks instead to inform readers about the full scope and nature of these attacks, the reasons why they are launched and the people and policies behind their design and execution.<br/><br />
Many reports of attacks inevitably end by asking ‘Who did it?’ But the answer is rarely straightforward. Western Governments usually allege the attacks come from ‘Asia’ or the ‘Far East’, rather than risk offending the Chinese government. Large corporations are similarly vague in their descriptions of these events, for fear of harming lucrative business arrangements. Security ‘experts’ always caution that IP addresses can be used as hop points through which attackers disguise their true origins, so perhaps this could be a case of other countries trying to make it look as if China was the source. While true, if something looks, walks and quacks like a duck, it is almost always a duck.<br/><br />
We will not be so coy. This paper will look directly at the most prolific sponsor of computer network exploitation attacks: China. We know other countries have implemented similar programs for attacking computer networks and have seen many examples of these in our work over the last few years, but our focus here is China.<br/><br />
We will examine various aspects of these attacks, including the nature of the information targeted and the types of organisations threatened. We will consider the effort involved in planning, executing and managing these attacks; and assess the information products they generate, in order to understand the scale of human involvement and the government policies which sponsor information theft via targeted attacks. With all this in mind we will then postulate on where the stolen information goes and how it may be used.<br/>
<p style="padding: 10px 2%;"><strong> <a href="http://www.armadillouk.com/download/targeted_attacks_whitepaper.pdf">Download the whitepaper here</a></strong></p>
<hr />
<p style="padding: 10px 2%;"><span style='color:#006699'><strong>About ContextIS</strong></span><br />
The company was founded in 1998 with the aim of providing holistic security services. </br><br />
Our client base has grown steadily over the years, thanks in large part to personal recommendations from existing clients who value us as business partners. We believe our success is based on the value our clients place on our product-agnostic, holistic approach; the way we work closely with them to develop a tailored service; and to the independence, integrity and technical skills of our consultants. </br>In a number of cases, Context has been retained by major blue-chip companies and institutions as a valued service provider while contracts with other IT security suppliers originally hired alongside us have not been renewed.</br><br />
The best security experts need to bring a broad portfolio of skills to the job, so Context has always sought to recruit staff with extensive business experience as well as technical expertise. Our consultants hold an impressive range of security qualifications, but we are not just a bunch of techies who will try to blind you with science. Our aim is to provide effective and practical solutions, advice and support: when we report back to clients we always communicate our findings and recommendations in plain terms at a business level as well as in the form of an in-depth technical report. </br><br />
<a href="http://www.contextis.co.uk/"><span style='color:#006699;text-decoration:none'>www.contextis.co.uk</span></a></p>
<p style="padding: 10px 2%;"><span style='color:#006699'><strong>About Armadillo</strong></span><br />
Armadillo is the UK&#8217;s leading security solutions integrator with an extensive portfolio of complementary products that make us unique in our ability to provide true end-to-end security solutions, customised to meet a client&#8217;s specific technology and budgetary requirements. Our approach to delivering client solutions has evolved over a number of years through a wealth of experience in architecting, delivering and maintaining solutions for large and small enterprises across all market sectors, featuring strongly in the financial services, online gaming, legal, public, retailing and Government sectors. For more information, visit Armadillo at  <a href="http://www.armadillouk.com/"><span style='color:#006699;text-decoration:none'>www.armadillouk.com</span></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/contextis-release-new-whitepaper-crouching-tiger-hidden-dragon-stolen-data/feed/</wfw:commentRss>
		</item>
		<item>
		<title>SafeNet Acquires Cryptocard</title>
		<link>http://www.armadillouk.com/news/safenet-acquires-cryptocard/</link>
		<comments>http://www.armadillouk.com/news/safenet-acquires-cryptocard/#comments</comments>
		<pubDate>Mon, 12 Mar 2012 16:00:32 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1711</guid>
		<description><![CDATA[Heathrow, 12th March 2012
SafeNet Acquires Cryptocard 
Acquisition Combines Leader in Data Protection with Cloud Visionary
In a transaction that will significantly broaden and deepen the authentication and cloud-based services it offers to clients, SafeNet, today announced that it has acquired Cryptocard, a privately held leader of  cloud based authentication solutions .  Financial terms were [...]]]></description>
			<content:encoded><![CDATA[<p style="padding: 10px 2%;"><strong>Heathrow, 12th March 2012</strong><br/><br />
<span style='color:#ff9933'><strong>SafeNet Acquires Cryptocard</strong></span> </br><br />
<span style='color:#003366'><strong>Acquisition Combines Leader in Data Protection with Cloud Visionary</strong></span></p>
<p style="padding: 10px 2%;">In a transaction that will significantly broaden and deepen the authentication and cloud-based services it offers to clients, SafeNet, today announced that it has acquired Cryptocard, a privately held leader of  cloud based authentication solutions .  Financial terms were not disclosed.<br/><br />
With the acquisition of Cryptocard, SafeNet significantly enhances its market leading authentication portfolio, providing both enterprises and service providers with one of the most advanced authentication-as-a- service (Auth-as-a-Service) offerings in the marketplace.  Cryptocard’s platform will provide a unique opportunity for mobile and telecom service providers, as well as IT system integrators and service providers, to rapidly introduce Auth-as-a-Service and market leading authentication solutions to their end users.<br/><br />
By combining SafeNet’s Fully Trusted Authentication Solutions with Cryptocard’s innovative &#038; flexible Blackshield Cloud platform, SafeNet’s customers worldwide will now have access to secure, flexible and cost-effective on-premise and as-a-service solutions.<br/><br />
“As data continues to proliferate and move beyond traditional perimeters, both enterprise and government customers are demanding solutions that protect and control data and identities across networks, mobile devices and to and from the cloud,” said Chris Fedde, President and Chief Executive Officer of SafeNet. “By joining forces and engaging SafeNet’s global scale, we are uniquely positioned to help customers around the world accelerate the migration to and from the cloud in the most secure and cost effective manner.” <br/><br />
The acquisition will also expand SafeNet’s addressable market opportunity, solidifying the company’s leadership position in user authentication and strongly positioning the company to capitalize on the fast-growing Auth-as-a-Service and cloud services markets.<br/><br />
According to Gartner Inc.’s January 2012 “Magic Quadrant for User Authentication” report, Ant Allan, Vice President, stated, “The user authentication market is expected to grow by approximately 30 percent in the upcoming year.  Gartner predicts that, by 2017, more than 50 percent of enterprises will choose cloud-based services as the delivery option for new or refreshed user authentication implementations, up from less than 10% today.  However, it is likely that on-premise solutions will persist, especially in more risk averse enterprises that want to retain control of identity administration, credentialing and verification.”<br/><br />
Together, the combined company’s product and service offerings will enable customers to more effectively tailor, deploy and manage their authentication strategies to meet both current and future business needs. The addition of Cryptocard’s Auth-as-a-Service capabilities will help customers worldwide accelerate the deployment of authentication solutions, with improved flexibility and at a lower cost. In addition, SafeNet’s large global presence will enable the expansion of Cryptocard’s Auth-as-a-Service portfolio to APAC and across the broader EMEA and Americas markets.<br/><br />
“As mobile and cloud computing began to transform the security industry, Cryptocard saw a need to develop cloud based authentication solutions and a platform that would help our service provider and enterprise customers meet the emerging needs of this new security landscape,” said Neil Hollister, Chairman and Chief Executive Officer, Cryptocard. “Our unique platform for delivering Authentication-as-a Service is powerful, easy to deploy and helps our customers secure their most sensitive data against current and future security threats.”<br/><br />
Gartner Inc. has recognized both SafeNet and Cryptocard in its January 17, 2012 publication, titled “Magic Quadrant for User Authentication”.  SafeNet was positioned as a Leader in Gartner’s “Magic Quadrant for User Authentication”.  Cryptocard was positioned as a Visionary in Gartner’s “Magic Quadrant for User Authentication”.<br/></p>
<hr />
<p style="padding: 10px 2%;"><strong>About Cryptocard</strong><br />
Cryptocard helps organizations mitigate the risk of identity theft by using strong authentication to secure digital identities. Established in 1989 and headquartered in Canada and the UK, Cryptocard solutions are used by thousands of companies in more than 70 countries globally.  For more information, visit: <a href="http://www.cryptocard.com/"><span style='color:#006699;text-decoration:none'>www.cryptocard.com</span></a></p>
<p style="padding: 10px 2%;"><strong>About SafeNet, Inc.</strong><br />
Founded in 1983, SafeNet, Inc. is one of the largest information security companies in the world, and is trusted to protect the most sensitive data for market-leading organizations around the globe.  SafeNet’s data-centric approach focuses on the protection of high value information throughout its lifecycle, from the data center to the cloud.  More than 25,000 customers across commercial enterprises and government agencies trust SafeNet to protect and control access to sensitive data, manage risk, ensure compliance, and secure virtual and cloud environments. For more information, visit: <a href="http://www.safenet-inc.com/"><span style='color:#006699;text-decoration:none'>www.safenet-inc.com</span></a></p>
<p style="padding: 10px 2%;"><strong>About Armadillo</strong><br />
Armadillo is the UK&#8217;s leading security solutions integrator with an extensive portfolio of complementary products that make us unique in our ability to provide true end-to-end security solutions, customised to meet a client&#8217;s specific technology and budgetary requirements. Our approach to delivering client solutions has evolved over a number of years through a wealth of experience in architecting, delivering and maintaining solutions for large and small enterprises across all market sectors, featuring strongly in the financial services, online gaming, legal, public, retailing and Government sectors. For more information, visit Armadillo at  <a href="http://www.armadillouk.com/"><span style='color:#006699;text-decoration:none'>www.armadillouk.com</span></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/safenet-acquires-cryptocard/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Armadillo Selects Voltage Security</title>
		<link>http://www.armadillouk.com/news/armadillo-selects-voltage-security/</link>
		<comments>http://www.armadillouk.com/news/armadillo-selects-voltage-security/#comments</comments>
		<pubDate>Fri, 02 Mar 2012 14:05:39 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1715</guid>
		<description><![CDATA[Heathrow, 2nd March 2012
Armadillo Selects Voltage Security to Bring Data-centric Information Protection to Enterprise Customers 
By protecting the sensitive data itself, even if determined cybercriminals successfully gain access, they are only stealing data that has been rendered useless
London, UK – March 02, 2012 - Armadillo, the UK’s leading security solutions integrator and one of the [...]]]></description>
			<content:encoded><![CDATA[<p style="padding: 10px 2%;"><strong>Heathrow, 2nd March 2012</strong><br/><br />
<span style='color:#ff9933'><strong>Armadillo Selects Voltage Security to Bring Data-centric Information Protection to Enterprise Customers</strong></span> </br><br />
<span style='color:#003366'><strong>By protecting the sensitive data itself, even if determined cybercriminals successfully gain access, they are only stealing data that has been rendered useless</strong></span></p>
<p style="padding: 10px 2%;"><strong>London, UK – March 02, 2012</strong> - Armadillo, the UK’s leading security solutions integrator and one of the world’s most experienced eGRC providers, today announced that it has entered into partnership with Voltage Security in order to bring data-centric security and simplified stateless key management to customers, many of which are very large, complex and heterogeneous enterprises. Voltage solutions enable the protection of structured and unstructured sensitive data from end-to-end, as it’s used across data centres, public and private clouds and mobile devices. Data-centric security is one of the most powerful ways to protect against the impact of data breaches while effectively addressing current and future compliance requirements. Voltage leverages breakthrough technologies to enable solutions that work seamlessly, are highly scalable, and reduce costs and complexity. <br/><br />
Through this partnership, Armadillo can immediately empower customers with a fully-integrated end-to-end security offering that brings data-centric security to email messages, files and documents, databases and applications enterprise-wide.<br/><br />
“CISOs know that at some point their networks will be compromised; it’s no longer a case of if you will be hacked, but likely when,” said Rob Hale, eGRC Practice Lead. “With the latest technology advancements and innovations brought about by Voltage, security can now evolve from a focus on protecting the network perimeter to the ‘best case scenario’ of protecting the data itself. Then, in the event that a network breach does occur, any data that is stolen becomes worthless to criminals.”<br/><br />
“Data-centric protection should be a critical part of an effective security strategy, and the Voltage products offer the perfect complement to Armadillo’s eGRC solution set,” added Mark Newns, CEO of Armadillo.<br/><br />
“By working together we can better serve the needs of the many enterprise organisations currently wrestling with the complexity of regulatory and compliance mandates,” said Ravi Pather, vice president of sales, EMEA for Voltage Security. “Voltage’s data-centric approach leverages technologies such as Voltage Identity-Based Encryption™ (IBE) and Voltage Format-Preserving Encryption™ (FPE), rendering sensitive data useless to hackers and, in effect, turning the gold they’re after into straw.”<br/></p>
<hr />
<p style="padding: 10px 2%;"><strong>About Voltage Security</strong><br />
Voltage Security®, Inc. is the world leader in providing data-centric encryption and key management solutions for combating new and emerging security threats. With innovative, powerful and easy-to-use encryption and tokenization solutions for protecting sensitive business data, Voltage customers are able to address privacy regulations and best practices from around the world. Voltage customers adopting data-centric encryption include some of the largest companies in the world across a wide variety of industries including payments, financial, insurance, medical, e-commerce and more. Voltage solutions include three groundbreaking encryption approaches: Identity-Based Encryption™ (IBE), Format-Preserving Encryption™ (FPE), and Page-Integrated Encryption™ (PIE). Voltage solutions have changed how enterprises protect their most valuable assets—their customer data. Offerings include Voltage SecureMail™, Voltage SecureData™, Voltage SecureData Payments™, Voltage SecureFile™, Voltage SecureData Web™ and Voltage Cloud Services™, which provides cloud scale encryption and key management for their businesses, partners and customers. The company has been issued several U.S. patents and has several patents pending in the EU based upon breakthrough research in mathematics and cryptographic systems. To learn more about Voltage customers please visit <a href="http://voltage.com/customers/"><span style='color:#006699;text-decoration:none'>voltage.com/customers/</span></a></p>
<p style="padding: 10px 2%;"><strong>About Armadillo</strong><br />
Armadillo is the UK&#8217;s leading security solutions integrator with an extensive portfolio of complementary products that make us unique in our ability to provide true end-to-end security solutions, customised to meet a client&#8217;s specific technology and budgetary requirements. Our approach to delivering client solutions has evolved over a number of years through a wealth of experience in architecting, delivering and maintaining solutions for large and small enterprises across all market sectors, featuring strongly in the financial services, online gaming, legal, public, retailing and Government sectors. For more information, visit Armadillo at  <a href="http://www.armadillouk.com/"><span style='color:#006699;text-decoration:none'>www.armadillouk.com</span></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/armadillo-selects-voltage-security/feed/</wfw:commentRss>
		</item>
		<item>
		<title>RSA Named in Leaders Category in Both IT GRC and eGRC Platform Evaluations by Independent Research Firm</title>
		<link>http://www.armadillouk.com/news/rsa_leaders_itgrc_egrc/</link>
		<comments>http://www.armadillouk.com/news/rsa_leaders_itgrc_egrc/#comments</comments>
		<pubDate>Thu, 01 Dec 2011 09:00:14 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1697</guid>
		<description><![CDATA[Heathrow, 1st December 2011
RSA Named in Leaders Category in Both IT GRC and eGRC Platform Evaluations by Independent Research Firm 
RSA Archer Only Platform to Achieve Leader Category in Both IT and eGRC Reports
Bedford, MA— RSA, The Security Division of EMC (NYSE: EMC) today announced that the RSA Archer Governance, Risk and Compliance platform ranked [...]]]></description>
			<content:encoded><![CDATA[<p style="padding: 10px 2%;"><strong>Heathrow, 1st December 2011</strong><br/><br />
<strong>RSA Named in Leaders Category in Both IT GRC and eGRC Platform Evaluations by Independent Research Firm</strong> </br><br />
<strong>RSA Archer Only Platform to Achieve Leader Category in Both IT and eGRC Reports</strong></p>
<p style="padding: 10px 2%;">Bedford, MA— RSA, The Security Division of EMC (NYSE: EMC) today announced that the RSA Archer Governance, Risk and Compliance platform ranked in the Leaders category in two simultaneous Forrester Research, Inc. Waves evaluating IT and eGRC platform vendors for Q4 2011. RSA Archer was the only GRC vendor to be named to both Forrester Waves and awarded the highest rankings for current offering, strategy and market presence in the IT GRC Wave, and the highest ranking for market presence in the eGRC Wave. Not only was the RSA Archer platform named a leader but it is also positioned as having the highest rating for market presence in both reports.<br/></p>
<p>The Forrester Wave is designed to provide insight into a particular market or technology – to keep decision makers well-informed. For The Forrester Wave: IT Governance, Risk and Compliance Platforms, Q4 2011, December 1, 2011, Forrester evaluated leading risk and compliance software vendors across 59 criteria and found that the RSA Archer platform scored at the top of the evaluation for content management, risk and control management, and workflow management. Forrester noted in the report that &#8220;the strong technical capabilities of the RSA Archer platform and the company&#8217;s market success set it above the competition,&#8221; and the RSA Archer platform is &#8220;one of the best overall technical platforms we assessed in the IT GRC space. With the Archer platform now under the wings of the RSA brand, the larger set of development resources along with the extended sales and marketing force will enable RSA to remain a leader in the IT GRC market for the foreseeable future.&#8221; <br/><br />
Reflecting the still substantial gap that exists in most organizations between the IT and enterprise GRC functions, Forrester conducted and published a second evaluation, The Forrester Wave: Enterprise Governance, Risk and Compliance Platforms, Q4 2011, November 30, 2011. Again the RSA Archer platform emerged as a leader based on a strong vision and the ability to evolve quickly and address customers&#8217; changing needs. &#8220;With solid technical functionality and a satisfied customer base, Archer made the leap into the Leaders category in this year&#8217;s evaluation. The company&#8217;s platform is highly configurable with an intuitive and easy-to-navigate interface, and its ability to facilitate customer-led development sets it apart from competitors,&#8221; the report noted.<br/><br />
&#8220;Many companies are looking for tools to manage inter-related risks across the business not only in IT but also finance, operations, and legal domains, said David Walter, Senior Director, GRC Strategy and Solutions at RSA. &#8220;Our continued investment and dedication to creating a best-of-breed GRC platform helped to solidify our position in the market. The RSA Archer eGRC platform automates the measurement and visualization of risks across the enterprise to enable an apples-to-apples prioritization and enable a more effective utilization of limited risk mitigation resources. Our strong ecosystem of partners and vast community of users, help us to keep innovating and answer the latest GRC challenges facing our customers.&#8221;<br/><br />
On Tuesday, January 24, 2012 at 2:00 PM EST, RSA will host a webinar to discuss the increased need for a converged GRC platform enabling holistic management of risk and compliance across the organization. Joining David Walter in the discussion will be guest Chris McClean, Forrester Senior Analyst and author of the GRC Waves, and a panel of Fortune 500 organizations.<br/></p>
<p style="padding: 10px 2%;"><strong>About Armadillo</strong><br />
Armadillo is the UK&#8217;s leading security solutions integrator with an extensive portfolio of complementary products that make us unique in our ability to provide true end-to-end security solutions, customised to meet a client&#8217;s specific technology and budgetary requirements. Our approach to delivering client solutions has evolved over a number of years through a wealth of experience in architecting, delivering and maintaining solutions for large and small enterprises across all market sectors, featuring strongly in the financial services, online gaming, legal, public, retailing and Government sectors. For more information, visit Armadillo at  <a href="http://www.armadillouk.com/"><span style='color:#006699;text-decoration:none'>www.armadillouk.com</span></a></p>
<p style="padding: 10px 2%;"><strong>About RSA</strong><br />
RSA, The Security Division of EMC, is the premier provider of security, risk and compliance management solutions for business acceleration. RSA helps the world&#8217;s leading organizations solve their most complex and sensitive security challenges. These challenges include managing organizational risk, safeguarding mobile access and collaboration, proving compliance, and securing virtual and cloud environments. </br>Combining business-critical controls in identity assurance, encryption &#038; key management, SIEM, Data Loss Prevention, Continuous Network Monitoring, and Fraud Protection with industry leading eGRC capabilities and robust consulting services, RSA brings visibility and trust to millions of user identities, the transactions that they perform and the data that is generated. For more information, please visit <a href="http://www.rsa.com/"><span style='color:#006699;text-decoration:none'>www.rsa.com</span></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/rsa_leaders_itgrc_egrc/feed/</wfw:commentRss>
		</item>
		<item>
		<title>New approach to security - Lessons learnt from RSA data breach</title>
		<link>http://www.armadillouk.com/news/rsa_conference_europe_2011/</link>
		<comments>http://www.armadillouk.com/news/rsa_conference_europe_2011/#comments</comments>
		<pubDate>Wed, 12 Oct 2011 13:56:41 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1641</guid>
		<description><![CDATA[Heathrow,12th October 2011
RSA Executives Call for New Approach to Security 
Building on Valuable Lessons Learned, Executives Offer Insights and Steps to Develop the Advanced Security Systems Needed to Thwart Advanced Threats
RSA Conference Europe 2011 – London
Following on from the well publicised breach at RSA earlier this year all eyes were on the RSA Excecutives for [...]]]></description>
			<content:encoded><![CDATA[<p style="padding: 10px 2%;"><strong>Heathrow,12th October 2011</strong><br/><br />
<strong><span style='color:#F31313'>RSA Executives Call for New Approach to Security</span></strong> <br/><br />
<strong><span style='color:#006699;text-decoration:none'>Building on Valuable Lessons Learned, Executives Offer Insights and Steps to Develop the Advanced Security Systems Needed to Thwart Advanced Threats</span></strong><br/><br />
<strong>RSA Conference Europe 2011 – London</strong><br/><br />
Following on from the well publicised breach at RSA earlier this year all eyes were on the RSA Excecutives for the keynote speech delivered at the RSA conference in London last week.<br/><br />
&#8220;From an Armadillo point of view as one of RSA&#8217;s largest partners in EMEA, I was very interested in the steps RSA has taken post the much publicised breach. More importantly I was looking for RSA to further demonstrate their strength in dealing with the ever evolving security threats we now all face. Armadillo has been very much ahead of the game in this area, already discussing various advanced solutions with our clients to enhance the traditional security solutions which have now been proved to be ineffective. &#8221; said Andy Mayle - Technical Manager at Armadillo Managed Services Ltd&#8221;<br/><br />
The RSA European conference delivered on both fronts and below is a summary of the main message to be taken from the week.<br/><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> RSA executives deliver keynote address to IT professionals assembled to gain insights from security leaders&#8217; &#8220;Lesson&#8217;s Learned&#8221; and advice for preparing for and mitigating advanced cyber threats<br/><br />
	<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Company launches RSA NetWitness® Spectrum to accelerate the identification of zero day malware that blocking tools often miss<br/><br />
	<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> RSA announces software developer kits (SDKs) designed to help mobile application developers embed strong layers of security and access control into leading mobile application platforms<br/><br />
Executives of RSA, The Security Division of EMC (NYSE: EMC) today advised security professionals that the new fact of life for IT organizations is a state of persistent, dynamic, intelligent threats in which it is no longer a matter of if an organization will be compromised, but more likely when and how. The key to combating these threats, they say, is to recognize the different tactics and tools used in these advanced attacks and automate the response of controls to defend information assets, isolate compromised elements of the infrastructure and ensure that network compromise does not lead to damage to the business. <br/><br />
In a joint keynote address, Art Coviello, Executive Vice President for EMC and Executive Chairman of RSA, and Tom Heiser, President of RSA, discussed the evolving threat landscape and urged organizations to create advanced security systems capable of defending against these new threats and agile enough to meet the advanced challenges of today&#8217;s hyper-extended enterprise. <br/><br />
&#8220;2011 has been quite a year for us and for anyone on the security side of IT,&#8221; said Art Coviello during his keynote address. &#8220;It&#8217;s been a year of headline grabbing attacks across every corner of the world. Organizations are defending themselves with the information security equivalent of the Maginot Line as their adversaries easily outflank perimeter defenses.  People are the new perimeter contending with zero-day malware delivered through spear-phishing attacks that are invisible to traditional perimeter-based security defenses such as Anti Virus and Intrusion Detection Systems. Clearly conventional security is either not effective or not enough. The threat landscape is evolving and our security systems must change to outpace our adversaries.&#8221; <br/><br />
To defend against advanced threats, security programs must evolve to be risk-based, agile and contextual. <br/><br />
<strong>Risk-based</strong> – Risk is a function of the threat landscape, including understanding an organization&#8217;s adversaries and capabilities compared with the relative security exposure of the organization&#8217;s information assets. Intelligence about your potential attackers and most valuable assets shows you where to focus your efforts, such as what systems to protect and what users to closely monitor. <br/><br />
<strong>Agile</strong> – The threat landscape will continue to evolve, and a successful outcome requires that organizations have the agility to process, incorporate and analyze new sources of internal and external intelligence - on the fly. Automation is absolutely essential for security to work at the speed and scale of the networks and cyber threats we face. <br/><br />
<strong>Contextual</strong> – Incident response, investigation and remediation are most effective when a security event is delivered with complete context around it. The success of prioritizing and decision-making is dependent on having the best information available. Organizations must adopt a &#8220;big data&#8221; view of information security in which their security teams have real-time access to the entirety of information relevant to the detection of security problems. Big data combined with high-speed analytics provides  the contextual view needed to defend against advanced threats. <br/><br />
RSA President Tom Heiser conveyed &#8216;Lessons Learned&#8217; from the attack on RSA, and from an insider&#8217;s vantage point, offered specific advice on what organizations can do to help harden their defenses and adapt appropriately to the evolving threats. He advised, &#8220;Sophisticated attackers know traditional security controls and are adapting and changing tactics… determined to find exploits in complex, rapidly evolving IT environments and through people.&#8221; <br/><br />
Heiser closed his remarks by offering five categories of forward-leaning practices for getting ahead of advanced cyber threats:<br/><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Re-visit your view of risk &#8212; Conduct a risk assessment to identify your high value / high risk information assets, looking at things from an opponent&#8217;s perspective, and with an eye to real, not theoretical, opponents.</br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Re-think zero-day malware protection – don&#8217;t stop using traditional anti-virus tools, but recognize that they alone will not be sufficient against customized attacks.</br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Deploy security and network forensics capabilities for continuous monitoring, for deeper awareness and analysis of network traffic (this is different from traditional intrusion detection, which is past its freshness).</br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Harden authentication and tighten access control.</br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Increase user and executive education and communication – the human dimension is as important as the tools you deploy.</p>
<p style="padding: 10px 2%;">
<strong>Additional News from RSA</strong><br/><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> The company also announced the availability of RSA NetWitness Spectrum, a state-of-the-art malware analytical workbench that revolutionizes the identification and analysis of zero-day malware. Conference delegates can see the new capabilities in booth #D1.<br/><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> RSA is also offering software developers the capability to build in additional layers of security and access control into mobile applications for the leading mobile application platforms through the integration of RSA&#8217;s award-winning RSA SecurID and RSA Adaptive Authentication solutions. By extending strong and risk-based authentication controls to mobile, developers of mobile applications for business, banking and data access can help increase security and confidence in their mobile products.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/rsa_conference_europe_2011/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Armadillo and Redseal Selected by Betfair for Proactive Network Security</title>
		<link>http://www.armadillouk.com/news/redseal_betfair_announcement/</link>
		<comments>http://www.armadillouk.com/news/redseal_betfair_announcement/#comments</comments>
		<pubDate>Thu, 06 Oct 2011 12:07:59 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1592</guid>
		<description><![CDATA[Heathrow, 6th October 2011
Armadillo and RedSeal Selected by Betfair for Proactive Network Security 
Global Online Betting Market Leader Embraces RedSeal Security Solutions
SAN MATEO, CA&#8211;(Marketwire - Sep 19, 2011) - RedSeal Systems, Inc. today announced that online gaming giant Betfair has selected RedSeal&#8217;s proactive network security assessment solutions to further strengthen its defensive infrastructure and protect [...]]]></description>
			<content:encoded><![CDATA[<p style="padding: 10px 2%;"><strong>Heathrow, 6th October 2011</strong><br/><br />
<span style='color:#F31313'><strong>Armadillo and RedSeal Selected by Betfair for Proactive Network Security</strong></span> </br><br />
<span style='color:#006699'><strong>Global Online Betting Market Leader Embraces RedSeal Security Solutions</strong></span></p>
<p style="padding: 10px 2%;">SAN MATEO, CA&#8211;(Marketwire - Sep 19, 2011) - RedSeal Systems, Inc. today announced that online gaming giant Betfair has selected RedSeal&#8217;s proactive network security assessment solutions to further strengthen its defensive infrastructure and protect critical information systems.<br/><br />
RedSeal empowers enterprise organizations to analyze any possible path of access permitted or denied across their entire network to understand real-world points of IT risk before they can be compromised.<br/><br />
Rather than addressing individual threats, aggregating log data or auditing the behavior of individual firewalls or routers, RedSeal models the interaction of all network defenses to provide detailed visibility into any gaps in security, empower continuous compliance with industry regulations and ensure protection of key business assets.<br/><br />
By providing management with the unique ability to identify exposure to real-world threats and create metrics to trend the efficacy of network security defenses over time, RedSeal allows organizations with complex infrastructure to understand and improve the effectiveness of their overall security strategy.<br/><br />
&#8220;The complexity and incessant change in today&#8217;s enterprise networks has made it impossible for people to manage security without the aid of automation,&#8221; said Dr. Mike Lloyd, Chief Technology Officer at RedSeal. &#8220;We&#8217;re very pleased to list Betfair as a customer, as they are a high-profile leader in their industry who recognized RedSeal as a solution that&#8217;s necessary to address today&#8217;s real-world security challenges.&#8221;<br/><br />
Facilitating Betfair&#8217;s adoption of RedSeal was UK security systems integration specialists Armadillo, which has established a long-standing reputation within the gaming industry, along with other key verticals including the government and financial services sectors.<br/><br />
&#8220;RedSeal represents a tremendous opportunity for enterprise organizations to adopt a powerful, innovative new methodology for visualizing network security to bolster compliance and improve protection of assets and information,&#8221; said Mark Newns, CEO of Armadillo. &#8220;We&#8217;re proud to have helped bring RedSeal into a respected organization such as Betfair and believe that there&#8217;s huge potential for this solution to advance network security and risk management across our entire customer base.&#8221;<br/><br />
<strong>For more information on RedSeal Systems solutions and professional services, please contact us at +44(0)208 6106090 or email <a href="mailto:info@armadillouk.com"><span style='color:#006699;text-decoration:none'>info@armadillouk.com</span></a> to arrange a demo</strong></p>
<hr />
<p style="padding: 10px 2%;"><span style='color:#006699'><strong>About RedSeal Systems, Inc.</strong></span><br />
RedSeal Systems develops proactive network security assessment software that enables organizations to visualize their security standing, maintain continuous compliance with regulations and better protect their critical assets. Unlike systems that detect attacks once they occur, RedSeal identifies holes in security infrastructure before they are discovered by hackers. RedSeal software analyzes and simplifies the complex interaction of firewalls and all other network security devices, delivering in-depth understanding of real-world exposure. For more information, visit RedSeal at  <a href="http://www.redseal.net/"><span style='color:#006699;text-decoration:none'>www.redseal.net</span></a></p>
<p style="padding: 10px 2%;"><span style='color:#006699'><strong>About Armadillo</strong></span><br />
Armadillo is the UK&#8217;s leading security solutions integrator with an extensive portfolio of complementary products that make us unique in our ability to provide true end-to-end security solutions, customised to meet a client&#8217;s specific technology and budgetary requirements. Our approach to delivering client solutions has evolved over a number of years through a wealth of experience in architecting, delivering and maintaining solutions for large and small enterprises across all market sectors, featuring strongly in the financial services, online gaming, legal, public, retailing and Government sectors. For more information, visit Armadillo at  <a href="http://www.armadillouk.com/"><span style='color:#006699;text-decoration:none'>www.armadillouk.com</span></a></p>
<p style="padding: 10px 2%;"><span style='color:#006699'><strong>About Betfair</strong></span><br />
Betfair is one of the world&#8217;s largest international online sports betting providers and pioneered the betting exchange in 2000. Driven by cutting-edge technology, Betfair enables customers to choose their own odds and bet against each other. The company now processes over five million transactions a day from its three million registered customers around the world. In addition to sports betting, Betfair offers a portfolio of innovative products including casino, exchange games and poker. Betfair has twice been named the UK&#8217;s &#8216;Company of the Year&#8217; by the Confederation of British Industry and has won two prestigious Queen&#8217;s Awards for Enterprise, being recognised for Innovation in 2003 and most recently for International Trade in 2008. Betfair currently employs over 2,000 people worldwide. The company holds betting licences in Gibraltar, the US, Tasmania, Italy and Malta. For more information, visit Betfair at  <a href="http://www.betfair.com/"><span style='color:#006699;text-decoration:none'>www.betfair.com</span></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/redseal_betfair_announcement/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Gaming Industry Security Forum</title>
		<link>http://www.armadillouk.com/news/gaming-industry-security-forum/</link>
		<comments>http://www.armadillouk.com/news/gaming-industry-security-forum/#comments</comments>
		<pubDate>Sun, 04 Sep 2011 09:53:07 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1581</guid>
		<description><![CDATA[Heathrow, 4th September 2011
Armadillo hosts Gaming Industry Security Forum - 20th September 2011
In conjunction with our sponsors, FireEye, Redseal and SafeNet, Armadillo is hosting this invitation only event at the top of one of  London’s most recognisable landmarks, Tower Bridge. The North Tower is a unique venue that showcases the Bridges’ iconic and elegant [...]]]></description>
			<content:encoded><![CDATA[<p style="padding: 10px 2%;"><strong>Heathrow, 4th September 2011</strong></br><br />
<strong>Armadillo hosts Gaming Industry Security Forum - 20th September 2011</strong></br><br />
In conjunction with our sponsors, FireEye, Redseal and SafeNet, Armadillo is hosting this invitation only event at the top of one of  London’s most recognisable landmarks, Tower Bridge. The North Tower is a unique venue that showcases the Bridges’ iconic and elegant architecture. Original floor-to-ceiling windows are a striking feature of this area, introducing inspiring views of Tower Bridge and the Thames.</p>
<p style="padding: 10px 2%;">Topics being discussed by industry key speakers include:</p>
<p style="padding: 10px 2%;"><img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Protecting Information is Key to Protecting Brands. ‘If it moves, encrypt it. Even if it doesn’t!’ <br />
	<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Automation vs Complexity: Creating Tangible Network Security Metrics<br />
	<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> The $20B IT Security Gap! How Every Organization is at Risk to the New Breed of Next Generation Threats<br />
	<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Carrying out a Level 1 PCI-DSS Merchant audit internally; getting the Bank and the Card Scheme on-board</p>
<p style="padding: 10px 2%;">This promises to be an informative and highly relevant event for all the gaming industry, so keep an eye on your inbox for your invitation over the coming days.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/gaming-industry-security-forum/feed/</wfw:commentRss>
		</item>
		<item>
		<title>RSA Announces Revolutionary New Cyber Threat Solution</title>
		<link>http://www.armadillouk.com/news/rsa-netwitness-panorama/</link>
		<comments>http://www.armadillouk.com/news/rsa-netwitness-panorama/#comments</comments>
		<pubDate>Thu, 04 Aug 2011 11:19:57 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1553</guid>
		<description><![CDATA[Heathrow, 4th August 2011
RSA, the Security Division of EMC, Revolutionizes Situational Awareness, Providing Real-Time Visibility into The Most Complex Cyber Threats
RSA NetWitness Panorama™ Module Unifies Pervasive Network Monitoring and Log Data to Deliver Complete View of Potential Threats.
RSA enVision® 4.1 SIEM Platform Improves Speed and Simplicity for Real-Time Queries and Reporting, Enabling Faster, More Granular [...]]]></description>
			<content:encoded><![CDATA[<p style="padding: 10px 2%;" mce_style="padding: 10px 2%;"><font face="Calibri"><strong>Heathrow, 4th August 2011</strong></font></p>
<p style="padding: 10px 2%;" mce_style="padding: 10px 2%;"><font face="Calibri"><strong>RSA, the Security Division of EMC, Revolutionizes Situational Awareness, Providing Real-Time Visibility into The Most Complex Cyber Threats</strong><br />
<em>RSA NetWitness Panorama™ Module Unifies Pervasive Network Monitoring and Log Data to Deliver Complete View of Potential Threats.</font><br />
RSA enVision® 4.1 SIEM Platform Improves Speed and Simplicity for Real-Time Queries and Reporting, Enabling Faster, More Granular Investigations of Events and Log Data.</em></font> </p>
<p style="padding: 10px 2%;" mce_style="padding: 10px 2%;"><font face="Calibri"><strong>RSA, The Security Division of EMC (NYSE:EMC)</strong>, today announced a revolutionary approach to situational awareness for information security with the launch of RSA NetWitness Panorama™ technology and enhancements to its RSA enVision® Security Information and Event Management (SIEM) platform. These improvements are designed to provide customers with the ability to better identify and combat today&#8217;s advanced threats.</font></p>
<p style="padding: 10px 2%;" mce_style="padding: 10px 2%;"><font face="Calibri">RSA NetWitness Panorama, a new module in the RSA NetWitness family, delivers innovation in security analytics through the fusion of hundreds of log data sources with external threat intelligence. Combined with RSA NetWitness, enterprises can now have extraordinarily broad and robust high-speed visibility into the critical information needed to help detect today&#8217;s targeted, dynamic and stealthy attack techniques. RSA NetWitness Panorama may be deployed in three ways: as an extension to RSA NetWitness installations to combine the diverse information contained in log files with the deep content of full traffic capture, alongside RSA enVision for fast security analytics across the volumes of log data collected by RSA enVision, or as a standalone log analytics module with or without other 3rd party SIEM tools.</font></p>
<blockquote><p><font face="Calibri">&#8220;Customers are wrestling with the need to use a variety of data sources both to demonstrate compliance and to combat advanced threats&#8221;</font></p>
</blockquote>
<p style="padding: 10px 2%;" mce_style="padding: 10px 2%;"><font face="Calibri"> said Amit Yoran, Senior Vice President and General Manager, Security Management and Compliance Business, RSA, The Security Division of EMC. </font></p>
<blockquote><p><font face="Calibri">&#8220;Log management and SIEM technologies are important elements of incident and threat management processes, but have been constrained by a lack of a common lexicon, scalability, and the agility to adapt to the ever-changing threat landscape. Our enhancements to RSA enVision make it a more powerful tool for compliance reporting and also for analysis of log data as part of the security process. And, by providing native, cross-environment visibility and threat-informed analytics across log data and full packet capture, RSA NetWitness Panorama technology offers security teams an unprecedented view of organizational activity across even more of their IT infrastructure.&#8221;</font></p>
</blockquote>
<p style="padding: 10px 2%;" mce_style="padding: 10px 2%;"><font face="Calibri"><strong>RSA NetWitness Panorama Module Delivers Situational Awareness</strong> <br />
RSA NetWitness Panorama technology is designed to apply a host of NetWitness innovations to make log data an active part of security operations. Those innovations are engineered to include:</p>
<ol><font face="Calibri"></p>
<li>Interactive data-driven analysis of over 200 different enterprise log formats leveraging RSA enVision content definitions.</li>
<li>Award-winning, patented, drill-down analysis that works over network sessions and log data.</li>
<li>Mature threat intelligence combined with log data for better context of threats, automating a key part of the information sharing process around threats.</li>
<li>Data presented the way expert security analysts investigate advanced threats, enabling more insightful analysis</li>
<li>Scalability and speed from the RSA NetWitness platform enabling fast, actionable log analytics</li>
<li>High speed connector from RSA enVision to the RSA NetWitness Panorama module, enabling richer data feeds into RSA Netwitness Panorama in side-by-side deployments</li>
<p></font></ol>
<p style="padding: 10px 2%;" mce_style="padding: 10px 2%;"><font face="Calibri">The RSA NetWitness Panorama module can either consume syslog data directly or gain richer data via direct feeds from the RSA enVision SIEM platform to provide even greater context for investigations and incident response.</font></p>
<blockquote><p>&#8220;Enterprises continue to struggle to achieve adequate visibility into a variety of advanced, targeted and layered threats that evade detection by traditional approaches to incident management,&#8221;</p></blockquote>
<p>said Lawrence Pingree, Research Director, Gartner. </p>
<blockquote><p>&#8220;Combating these attacks requires security teams to think differently about how they can achieve situational awareness. The ability to understand complete security context is significantly enhanced through the fusion of disparate security events in conjunction with protocol level visualization, and is an essential component to the efficiency of today&#8217;s security operations and incident response triage procedures.&#8221;</p></blockquote>
<p></font></p>
<p style="padding: 10px 2%;" mce_style="padding: 10px 2%;"><font face="Calibri"><strong>RSA enVision Enhancements Improve Speed of Investigations.</strong><br />
Enhancements to the RSA enVision SIEM platform are designed to increase the speed and simplicity of ad-hoc queries against log data, while improving report management capabilities. Customers can now execute queries for investigation and incident response across large volumes of log data with up to 10X improvements in response time over the previous version. RSA enVision 4.1platform is also engineered to enable RSA enVision ES centralized deployments to be run as a fully virtual machine and offers virtual collectors for RSA enVision LS distributed deployments, making it simpler for customers to implement consistent security and compliance across physical and virtual infrastructures. The performance improvements of ad-hoc queries in the RSA enVision 4.1 platform help deliver the speed and flexibility critical for log-specific investigations and forensics.</font></p>
<p style="padding: 10px 2%;" mce_style="padding: 10px 2%;"><font face="Calibri"><strong><a href="http://www.armadillouk.com/download/rsa/rsa_netwitness_panorama_solution_brief.pdf" target="_blank">Please click here download the solution brief PDF for more information</font></strong></p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/rsa-netwitness-panorama/feed/</wfw:commentRss>
		</item>
		<item>
		<title>RSA Security Breach Update</title>
		<link>http://www.armadillouk.com/news/rsa-security-breach-update/</link>
		<comments>http://www.armadillouk.com/news/rsa-security-breach-update/#comments</comments>
		<pubDate>Wed, 08 Jun 2011 09:00:45 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1521</guid>
		<description><![CDATA[Heathrow, 8th June 2011
RSA, the Security Division of EMC, offers remediation assistance
Following on from yesterdays RSA announcement regarding the proposed remediation steps for RSA SecurID clients, we would like to provide as much assistance and information as we can to make your experience as painless as possible.
RSA have offered to replace tokens for clients with [...]]]></description>
			<content:encoded><![CDATA[<p style="padding: 10px 2%;"><strong>Heathrow, 8th June 2011</strong></br><br />
<strong>RSA, the Security Division of EMC, offers remediation assistance</strong></br><br />
Following on from yesterdays RSA announcement regarding the proposed remediation steps for RSA SecurID clients, we would like to provide as much assistance and information as we can to make your experience as painless as possible.</br><br />
RSA have offered to replace tokens for clients with concentrated user bases typically focused on protecting intellectual property and corporate networks.</br><br />
RSA have provided the remediation numbers below to discuss the update and to register a request for token replacement.</br><br />
<strong>To set your expectations correctly see below for what this means for you:</strong></br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Priority will be given to Government, defence, companies that deal with official secrets and those with specific IP to protect.</br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> This is not a number that will provide immediate remediation it will only initiate the process.</br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Please make sure that the person calling the remediation number is directly responsible for the RSA estate.</br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet"> Once you have registered you will be emailed the required forms and will be contacted by an RSA representative within 2 days.</br><br />
<strong>If you require further assistance or information after calling RSA please contact  Armadillo on 0208 610 6090.</strong> </br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet">  International: +1-508-497-7901, Option #5 for RSA, Option #1 for RSA SecurID Remediation Program</br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet">  U.S.: +1-800-782-4362, Option #5 for RSA, Option #1 for the RSA SecurID Remediation Program </br><br />
<img src="http://www.armadillouk.com/images/bullet.jpg" alt="bullet">  Canada: +1-800-543-4782, Option #5 for RSA, Option #1 for the RSA SecurID Remediation Program</p>
<p style="padding: 10px 2%;"><strong>Click the RSA logo below to view the open letter from Art Coviello, Executive Chairman RSA </strong></p>
<p align="center"><a href="http://www.rsa.com/node.aspx?id=3891" target="_blank"><img src="http://www.armadillouk.com/images/rsa.jpg" alt="Open Letter" align="middle" border="0" height="36" hspace="10" width="71"></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/rsa-security-breach-update/feed/</wfw:commentRss>
		</item>
		<item>
		<title>RSA Security Breach Announcement</title>
		<link>http://www.armadillouk.com/news/rsa-security-breach-announcement/</link>
		<comments>http://www.armadillouk.com/news/rsa-security-breach-announcement/#comments</comments>
		<pubDate>Fri, 18 Mar 2011 09:00:53 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.armadillouk.com/?p=1494</guid>
		<description><![CDATA[Heathrow, 18th March 2011
RSA, the Security Division of EMC, urges critical actions for SecurID installations
Following on from RSA&#8217;s recent announcement today that they have experienced a security breach please see below for recommended actions by RSA, links to the RSA open letter to all their clients and RSA&#8217;s SCOL advisory on general security best practices [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Heathrow, 18th March 2011</strong></p>
<p><strong>RSA, the Security Division of EMC, urges critical actions for SecurID installations</strong></p>
<p>Following on from RSA&#8217;s recent announcement today that they have experienced a security breach please see below for recommended actions by RSA, links to the RSA open letter to all their clients and RSA&#8217;s SCOL advisory on general security best practices and product best practices.</p>
<p><strong>Overall Recommendations:</strong><br />
RSA strongly urges customers to follow both these overall recommendations and the recommendations available in the best practices guides linked to this note.</p>
<ul>
<li>We recommend customers increase their focus on security for social media applications and the use of those applications and websites by anyone with access to their critical networks.</li>
<li>We recommend customers enforce strong password and pin policies.</li>
<li>We recommend customers follow the rule of least privilege when assigning roles and responsibilities to security administrators.</li>
<li>We recommend customers re-educate employees on the importance of avoiding suspicious emails, and remind them not to provide user names or other credentials to anyone without verifying that person’s identity and authority. Employees should not comply with email or phone-based requests for credentials and should report any such attempts.</li>
<li>We recommend customers pay special attention to security around their active directories, making full use of their SIEM products and also implementing two-factor authentication to control access to active directories.</li>
<li>We recommend customers watch closely for changes in user privilege levels and access rights using security monitoring technologies such as SIEM, and consider adding more levels of manual approval for those changes.</li>
<li>We recommend customers harden, closely monitor, and limit remote and physical access to infrastructure that is hosting critical security software.</li>
<li>We recommend customers examine their help desk practices for information leakage that could help an attacker perform a social engineering attack.</li>
<li>We recommend customers update their security products and the operating systems hosting them with the latest patches.</li>
</ul>
<p>For RSA product-specific recommendations, please follow the links below to the Security Best Practices Guides for each product. If you are unable to access the files via <strong>RSA SecurCare </strong><a href="http://knowledge.rsa.com/"><strong>http://knowledge.rsa.com/</strong></a> please contact support at:</p>
<p>U.S.: 1-800-782-4362, Option #5 for RSA, Option #1 for SecurCare note<br />
Canada: 1-800-543-4782, Option #5 for RSA, Option #1 for SecurCare note<br />
International: +1-508-497-7901, Option #5 for RSA, Option #1 for SecurCare note</p>
<p><strong>SecurCare Online Advisory Direct Link </strong><a href="https://knowledge.rsasecurity.com/scolcms/set.aspx?id=8884" target="_blank"><strong>https://knowledge.rsasecurity.com/scolcms/set.aspx?id=8884</strong></a></p>
<p><strong>RSA open Letter to Customers </strong><a href="http://www.rsa.com/node.aspx?id=3872"><strong>http://www.rsa.com/node.aspx?id=3872</strong></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.armadillouk.com/news/rsa-security-breach-announcement/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>

