A practical approach for a mobile data-centric security strategy

Jamie Bass, Director - PwC Advisory Security practice and Terence Spies, CTO, Voltage Security
Mobile devices such as smartphones and tablets have become mainstream business tools. Enterprises are accelerating their adoption of a Bring Your Own Device (BYOD) model to increase staff productivity and extend their relationships and brand to customers and partners through mobile channels, especially email. This presents major challenges to their existing security architecture and programs; every environment now features an unprecedented mix of operating systems, applications and practices
Jul 10 2012
60 mins
A practical approach for a mobile data-centric security strategy
More from this community:

Health IT

Webinars and videos

  • Live and recorded (313)
  • Upcoming (16)
  • Date
  • Rating
  • Views
  • Learn about new features coming with SharePoint 2013 including changes in Service Applications and improvements in SQL and Storage, as well as social computing and collaboration with Profile Synchronization improvements. Our SharePoint experts will also share best practices for managing your SharePoint customizations including utilizing SharePoint-hosted apps and SharePoint management team development.
  • With the impending patent expiries of biologic drugs, there is a huge market potential for subsequent entry biologics. A strong integration of R&D and marketing is key to success, and this briefing will highlight the technology advancements.

    Why you should attend:
    ·Learn about the growth of follow-on-biologics
    ·Identify the drivers and restraints
    ·Discuss trends in technology development
  • Join Raj for a complete regulatory overview including:

    - HIPAA Omnibus Update
    - FTC Health Breach Rule
    - Top 5 reasons organizations FAIL Security Assessments
    - Case Studies
    - Guidance
    - Success Stories
  • The HITECH Act created new categories of business associates that included health information organizations (HIO), these days referred to as HIEs, and health insurance exchanges (HIX). OCR is preparing to make sure these business associates follow the HIPAA rules.

    The omnibus rule compliance date is rapidly approaching. If you’re an HIE or an HIX, it’s time to make sure all of those policies are in place, the workforce is trained and all of those other tasks that pave the road to HIPAA compliance. This also includes, among other things, reaching out to all of your covered entity customers and negotiating that business associate agreement, testing security incident response plans and that business continuity plan. You will walk away with a solid understanding of the not-so-new privacy and security requirements and practical information you can use to ramp up your compliance efforts in preparation for the September 23, 2013 omnibus rule compliance deadline.
  • The Lazy Attacker: Defending Against Broad-based Cyber Attacks with Unified & Collaborative Defenses

    Advanced Persistent Attacks (APTs) get most of the attention from the cyber security community because, as defenders, we want to be vigilant against the most insidious techniques. However, this unilateral mindset ignores a much less interesting reality. Generally, cyber criminals are as lazy as criminals in the “real world.” What do we mean by lazy? Attackers will use the “lowest common denominator” method against the widest range of IP addresses from the same source set of IP addresses - which means that sharing information about their methods with others, and implementing simple defenses are best practices.

    Adjusting your focus from the “shiny object” of APTs to those broad-based threats can help prioritize your own defenses and optimize your incident response program. Attend this webinar to hear directly from Jaime Blasco, Director of AlienVault Labs, on how you can:

    * Understand the common exploit methods of the “lazy attacker”
    * Review the benefits of a collaborative approach to threat intelligence
    * Prioritize defensive tactics and remediation activities
    * Implement a unified, simplified approach to threat management
  • This is the second in a series of three webinars covering the topic Value based healthcare.

    The session will cover:

    •The benefits of considering value in healthcare and the opportunities for organisations
    •Examples from provider organisations who have a adopted a value approach
    •The challenges with adopting a different approach and how to engage teams/the wider organisation in the vale agenda
    •The role of medics and clinical teams in supporting the change
    •The impact of adopting this approach
    •Opportunities for the future
  • Recent studies have shown that at least 20% of the animal cell cultures currently in use in the US are contaminated by either microorganisms or other cell lines. This three part live, on-line seminar series will review the scope of this major problem and examine some of its causes and techniques for avoiding it. It will also explore some key, easy to employ strategies for preventing these losses by careful culture management.

    This webinar will discuss good aseptic technique: developing a practical approach to aseptic technique; reducing day-to-day contamination problems in the lab; and helpful hints for avoiding contamination.
  • This free webinar will address the key issues that all finance staff will need to consider during these challenging and changing times in the NHS. It is vital to be prepared, both personally and professionally even if you are not currently directly affected by change, it is important to keep one step ahead. Don't miss this opportunity to learn and understand more about the NHS reforms and current context.

    We are delighted to announce that Paul Taylor, Interim Director of Finance, Royal Orthopaedic Hospital FT, will lead this session giving you a clear picture and national perspective of the current key issues and priorities across the NHS.

    This webinar will be an hour long and will consist of the presentation followed by a question and answer session, which will allow you to pose your questions to the facilitator.
  • Are you facing any of these situations?

    • You’ve bought BPM technology, but are not sure how or where to get started?

    • You got off to the wrong foot on BPM processes. Now how do you fix that?

    • You’ve done process modeling of the As-Is processes? What do you do next?


    Join us for an insightful and informative look at how to get started on the right path, and how to quickly correct if you didn’t, with Business Process Management.

    This workshop will address these three use cases and help you figure out what to next. For each scenario, the workshop will address:

    1. What’s most important here?
    2. How do you engage executive sponsorship in the discussion and gain their commitment?
    3. How can metrics help us make the point?

    Learn best practices to get off to the right start. Use practitioner tips to refocus your BPM effort. Select and engage the right executive sponsor and process owner for support and success. Use joint model-driven process models to provide momentum for the BPM efforts.
  • More and more organizations are exploring the ramifications of Big Data on their enterprises. Deployments of Smart Meters to better manage the electric grid, Industrial Control Systems (ICS) across a variety of sectors, and the promise of always on and always connected systems are pushing organizations to gather more data than previously imagined. What are the implications from a privacy and intellectual property perspective and how can we as security professionals provide a level of control and risk management over the coming wave of The Internet of Things? Join (ISC)2 and Capella University on May 23, 2013 at 1:00pm Eastern for a discussion on these important concerns.
  • Channel
  • Channel profile
Up Down
  • Avoid data residency mistakes and reduce risk and compliance challenges Recorded: Aug 16 2012 61 mins
    Learn how to avoid data residency mistakes by applying data-centric security for global governance, risk and compliance.

    Data residency laws can place complicated requirements and constraints on the IT strategy - from preventing the adoption of distributed application architectures including cloud, to requiring expensive in-country data center operations with dedicated staff. US, EU cross border data laws, Offshore Banking rules, and federal mandates may also have conflicting data governance requirements leading to high compliance costs.

    However, businesses today operate across more geographic boundaries than ever before and as data travels globally, a company’s compliance, risk, and data governance obligations become exponentially more complex. In addition, data moving across public and private clouds increases breach risk and compliance regulators can stop projects in their tracks - sometimes with dramatic consequences.

    Join us for this live webcast where Mark Bower, VP product management, Voltage Security, will share effective strategies for protecting your data from threats while meeting privacy compliance regulations regardless of where your data is.

    -- Data residency risks and challenges, and using a data-centric security approach to overcome them

    -- How to embrace a complex regulatory environment without the cost and risk of a traditional in-country data center

    -- Best practices to govern data access across geographic compliance boundaries such as the US and Canada, and the US and the EU

    -- Use cases for financial entities operating offshore and private banking rules and regulations such as those in the EU, Singapore and Switzerland
  • Simplified email data security for mobile smartphones and tablets Recorded: Jul 12 2012 60 mins
    Legacy approaches to securing email communications usually leave a lot to be desired or just plain don’t work, with usability being the number one barrier to adoption. They also require complex configuration files, key management, administration and provisioning – not to mention the multiple end-user steps to access encrypted emails and attachments. In many cases, inconsistent delivery methods even from a single solution results in clunky or unusable experience for mobile users.

    But what if your mobile users could send and read encrypted email on leading iOS, Android, and Blackberry devices using the native experience without the hassle of web browsers, managing certificates, or awkward proxy servers? What if you could manage granular email data protection policies across corporate and personal mobile devices, both inside and outside the enterprise, from a unified console?

    Join David Strom, expert on networking and communications technologies, and Mark Schweighardt, Director product management at Voltage Security, to learn:

    -The challenges posed by current mobile device security solutions for securing email communications on smartphones and tablets

    -How Voltage SecureMail Mobile Edition extends data-centric protection of emails seamlessly to and from desktops, applications, gateways, laptops, mobile devices, and cloud inboxes

    -How to read and send encrypted email via the Voltage SecureMail mobile apps, and the benefits to mobile users and IT security operations

    -How Voltage SecureMail Mobile Edition integrates with your existing compliance solutions such as DLP, archiving, and e-discovery, and with your existing email and IT infrastructure
  • A practical approach for a mobile data-centric security strategy Recorded: Jul 10 2012 60 mins
    Mobile devices such as smartphones and tablets have become mainstream business tools. Enterprises are accelerating their adoption of a Bring Your Own Device (BYOD) model to increase staff productivity and extend their relationships and brand to customers and partners through mobile channels, especially email. This presents major challenges to their existing security architecture and programs; every environment now features an unprecedented mix of operating systems, applications and practices
  • 5 Tips for Securing Data On Smartphones and Tablets Recorded: Jun 13 2012 57 mins
    Every day, more and more sensitive business data and communication are being accessed by BYOD (Bring Your Own Device) and IT-provisioned smartphones, bringing huge implications to enterprise security and compliance efforts. It's not surprising that the top concern of today’s mobile enterprises is data security.

    Traditional, container-based approaches to securing data on smartphones have encountered limited success due to their complexity to use and deploy, which impacts user productivity. No amount of perimeter defense can completely protect data accessed by smartphones, as evidenced by the data breaches still happening today.

    Our guest speaker Bob Bragdon, Publisher, CSO Magazine and Mark Bower, VP Product Management, Voltage Security discuss a data-centric view for protecting valuable business data and talk about the top five strategies for mobile data security that can make or break your enterprise security strategy.
  • Data-centric security: an introduction to Voltage SecureMail Recorded: May 3 2012 44 mins
    Please join us on May 3rd at 1 PM ET to see how Voltage Security offers a robust and easy to implement email encryption solution for securing your email communications.

    Voltage’s SecureMail solution offers,

    • Best User Experience. 

    Encrypted communications can be sent to anybody — inside or outside the credit union organization. Secure emails can be sent and received just like regular email. With Voltage’s Mobile Plus initiative, emails will be more secure when shared via smart phone devices.

    • Lowest Total Cost of Ownership. 

    Voltage’s Identity Based Encryption provides stateless key management. This removes overhead and the burdensome costs of managing keys

    • Maximum Email Message Security. 

    Employs proven encryption technologies.

    • Highest Scalability. 

    Proven to scale across a hundred users or to several thousand internal and external users. You continue to add recipients easily and at scale.

    Click below to hear Wells Fargo’s perspective on what email security approach they needed and why Voltage was the best solution for them. Wells Fargo video: http://www.voltage.com/wells-fargo/index.htm

    Join our webinar on May 3, to learn more about how Voltage Security can help.
  • Reducing PCI scope and cyber risk - at the same time Recorded: Apr 19 2012 59 mins
    This webcast features Emily Mossburg, Principal, Deloitte & Touche LLP, who shares her personal experience in driving a data-centric security implementation at a Fortune 50, Top 10 bank.

    Topics include:
    - Conducting a broad evaluation of your data security options
    - Gauging capacity requirements
    - Ensuring that scalability is addressed in order to maximize your investment
    - Socializing the data security plan within your company
    - Leading your company through a successful data security implementation
  • Learn how 6 top companies protect their data Recorded: Mar 20 2012 63 mins
    Data privacy is typically driven by compliance mandates and while compliance does require security, it may not protect data as compliant data is breached every day.

    Join us for this free webcast to gain invaluable insights from cases studies including AIG Group, JPMorgan Chase and Heartland Payment Systems, among others.

    Learn how these companies are using a data-centric security strategy to:

    • Consolidate data protection into a single, scalable architecture platform
    • Simplify IT operations with stateless key management
    • Protect data - anywhere, all the time
    • Secure structured and unstructured data on any platform, anywhere
    from mainframe to mobile, in and out of the cloud

    Enterprise customer case studies will include:
    • Securing application data in the data center
    • Securing cross-border data for residency and privacy
    • Securing data in QA and pre-production environments
    • Securing data stored in public cloud services
    • Securing PCI and payments data
    • Securing document sharing between employees, partners and customers
  • The Patriot Act and Protecting Data in the Cloud Recorded: Mar 7 2012 48 mins
    As banking and financial institutions seek to benefit from tremendous cost savings possible with cloud infrastructure and services – two key factors must be considered – the Patriot Act which has strict stipulations regarding access to data and where it is stored and the protection of data even from third party service providers. This seminar will explore both these issues and by using some common examples such as BPOS, propose a framework for addressing both without impacting operational costs or adding large amounts of excess infrastructure.
  • What’s new in Crypto Recorded: Mar 7 2012 55 mins
    Mainframes remain the core of business-critical operations in most of the world's largest and most successful enterprises, including those in banking, insurance, healthcare, and retail. But as IT management will attest, there can be issues with complexity when it comes to securing critical information on the mainframes running on z/OS. Implementing an encryption solution can be disruptive to business operations and require hundreds of lines of code to acquire and store keys and perform cryptographic operations. Adding to the complexity are the deep expertise and highly specialized knowledge needed to keep all the moving parts working. But it doesn’t have to be that way -- in this webcast we'll discuss proven strategies for easily implementing data security in the z/OS environment.
  • Enterprise Encryption 101 - Technical Deep Dive Recorded: Mar 7 2012 80 mins
    The fact is mainframe resources are now increasingly accessible from the Internet, and even when they aren't, internal threats, trusted partners, interaction with distributed machines, and outsourcing all represent risks that must be mitigated. Encryption can minimize the cost impact of data breaches because encrypted data is virtually useless to anyone. Learn the latest about securing mainframe information from Phil Smith, Mainframe Architect with Voltage Security who has 30+ years of mainframe experience.
  • Protect Sensitive Data in Development and Test Environments Recorded: Mar 7 2012 59 mins
    Listen to Steve Kozman, SVP & Chief IT Risk Officer, SunAmerica Financial Group share his experience and lessons learned while implementing data protection across seven business divisions at SunAmerica. When it comes to data protection, organizations often consider only data that is used in customer-facing applications and production databases. But what about data used in non-production environments such as application development, testing, quality assurance and training? Many organizations have implemented policies or solutions such as strong password protection and firewalls to comply with regulatory requirements and to deter breaches, yet common infrastructure-centric methods for protecting sensitive information have proven inadequate in today's threat environment. Hear how SunAmerica Financial Group has achieved this.
  • Killing Data – Will encryption become the cornerstone of your data security? Recorded: Feb 14 2012 61 mins
    As cybercriminals have become more skillful and sophisticated, they have eroded the effectiveness of our traditional perimeter-based security controls. The constantly mutating threat landscape requires new defensive measures, one of which is the pervasive use of data encryption technologies.

    Join us for this free webinar, and in just 45 minutes you'll gain invaluable insight into the latest trends and customer-proven solutions for data-centric security. Insight that you can put into action at your company today, including:

    - Encryption prevents cybercriminals from monetizing your data

    - Ubiquitous encryption is the only hope we have of maintaining some kind of parity with attackers in the new threat landscape

    - Data-centric security is a much more effective way to combat cybercriminals

    Be the hero for your business. Make plans to address your vulnerabilities now.

    As a preview to this webcast we invite you to register for the newly released Forrester White Paper "Killing Data": http://www.voltage.com/info/120214-killingdata-wp.htm
    The webcast will provide a discussion and drill down into the details of this paper.
Data Security for the Enterprise
Voltage Security, Inc. is the world leader in providing data-centric encryption and key management solutions for combating new and emerging security threats. With innovative, powerful and easy-to-use encryption and tokenization solutions for protecting sensitive business data, Voltage customers are able to address privacy regulations and best practices from around the world.

Embed in website or blog

Successfully added emails: 0
Remove all
  • Title: A practical approach for a mobile data-centric security strategy
  • Live at: Jul 10 2012 12:05 am
  • Presented by: Jamie Bass, Director - PwC Advisory Security practice and Terence Spies, CTO, Voltage Security
  • From:
Your email has been sent.
or close
You must be logged in to email this