Regional regulatory compliance trends: Strategies and implications

In this podcast, Tim White, Director of Product Management, Policy Compliance at Qualys, talks about regulatory compliance trends that across a variety of different regions in the world, as well as strategies for dealing with them. Here’s a transcript of the podcast for your convenience. Hello, I’m Tim White, Director or Product Management at Qualys. Today I’m going to talk about some regulatory compliance trends that we’re seeing across a variety of different regions in … More Continue reading Regional regulatory compliance trends: Strategies and implications

Qualys helps federal agencies address requirements of White House EO on cybersecurity

The FedRAMP-certified Qualys Cloud Platform now supports the requirements laid out in the 2017 White House Executive Order (EO) on Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure. The 2017 White House EO charges each individual agency with reviewing and reporting on its cyber posture using the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), while continuing to manage its own cyber risk using the Defense Information Systems Agency Security Technical Implementation … More Continue reading Qualys helps federal agencies address requirements of White House EO on cybersecurity

Assess, report and remediate security-related configuration issues

Qualys announced Security Configuration Assessment (SCA), a new add-on for Vulnerability Management (VM) that provides customers cloud-based tools to automate configuration assessment of global IT assets using the latest out-of-the-box Center for Internet Security (CIS) benchmarks. Configuration issues are a major source of breaches, and basic hardening of all systems — whether on-premise or in the cloud — is required to protect today’s complex environments. To help customers with this challenge, Qualys is introducing SCA … More Continue reading Assess, report and remediate security-related configuration issues

Qualys Container Security: Discover, track, and secure containers

Qualys announced a new solution that extends its single-pane visibility and continuous security to the new and growing virtualization environment of Docker containers, and enables customers to proactively build security into their container deployments and their DevOps processes at any scale. “OS containers are not inherently unsecure, but are being deployed unsecurely, driven by developers and a need for agility in service development and deployment,” according to Neil MacDonald, VP and Distinguished Analyst, Gartner. “Security … More Continue reading Qualys Container Security: Discover, track, and secure containers

Qualys enables customers to efficiently comply with key GDPR elements

Qualys now offers customers purpose-built content, workflows and reporting in its cloud platform to provide them with continuous IT asset visibility, data collection and risk evaluation for compliance with the EU General Data Protection Regulation (GDPR). It also helps customers with ongoing protection of personal data across global IT environments and third parties. Qualys will demonstrate these capabilities for enabling GDPR compliance during the Infosecurity Europe conference at stand E20. GDPR requires organizations globally to … More Continue reading Qualys enables customers to efficiently comply with key GDPR elements

New infosec products of the week​: March 31, 2017

Waterfall Security, CNA Hardy and THB partner to create global industrial cyber proposition THB, CNA Hardy and leading cybersecurity specialist Waterfall Security Solutions have entered into a partnership to provide a new cyber security protection package for industrial businesses globally. “This new cyber insurance partnership is a global precedent on many levels. First, it documents enough concern around increasing cyberattacks on industrial facilities, a clear sign for potential high profits from financial institutions. Secondly, it … More Continue reading New infosec products of the week​: March 31, 2017

Don’t forget to pack security for the journey to the cloud

When you move workloads to public cloud platforms, you offload many tasks on the cloud provider, but don’t fall for the misconception that you’re entirely off the hook with security. Although cloud providers “rent” their computing infrastructure to you, they operate on a “shared security responsibility” model, meaning you still must protect your workloads in the cloud. So, just as with your on-premises systems, you must perform vulnerability management, policy compliance, malware detection and web … More Continue reading Don’t forget to pack security for the journey to the cloud