Resource Library

White Papers

White Papers


eBook/Infographic: The Aftermath of a Breach and Steps to Reduce Risk

The number of data breaches hit a record high in 2014 – and 2015 is not looking any better. In the US alone to date there have been 591 reported breaches, exposing more than 175,443,888 individuals’ personally identifiable information (PII), payment card details, protected healthcare data (PHI) and/or other private information. Our eBook looks at the aftermath of a breach, from costs to the areas of vulnerability and common attack vectors. But don’t despair, we also offer 7 ways to protect against breaches and reduce risk.

Download "eBook/Infographic: The Aftermath of a Breach and Steps to Reduce Risk"

After the Perimeter: How a ‘Segment of One’ Simplifies and Improves Security

Many recent headlines have highlighted the fact that the traditional perimeter-based approach to network security has failed to adequately protect organizations, and that a new approach is needed. This white paper examines the traditional approach to network security, and why it can no longer effectively be used in today’s environment. It also offers a new approach to network access based on a ‘segment of one’ that can simplify and improve your security.

Download "After the Perimeter: How a ‘Segment of One’ Simplifies and Improves Security "

Avoiding the Security Risks of Office 365

As organizations replace on-premises applications with cloud-based ones, more of their data communications occur outside the corporate firewall, creating a completely new set of compliance and security concerns. Paramount among these concerns is the security of business-critical and sensitive information.This paper discusses how organizations can reap the benefits of Office 365 while mitigating security risks associated with storing information outside the corporate firewall. By reading this white paper, organizations can see how to manage content security risks in Office 365 by continuously monitoring content and automatically applying granular controls to limit access to and the distribution of sensitive content.

Download " Avoiding the Security Risks of Office 365"

4 Cornerstones to Securing Payment Card Data

Effective from January 2015, PCI DSS 3.0 has made compliance an even more demanding task for organizations that handle payment card data. At the same time, recent cyberattacks have demonstrated that compliance alone is no guarantee that data is secure.

In order to succeed in this environment, organizations need to abandon the uphill struggle of attempting to tackle both new PCI requirements and emerging cyber threats using traditional, inflexible network and information security solutions. This whitepaper presents an alternative, best-practice approach to securing payment card data, built on four pillars that address information security while promoting continuous compliance.

Download "4 Cornerstones to Securing Payment Card Data"

Infographic: AppGate’s context aware, dynamic approach to secure access

AppGate Secure Access makes the application/server infrastructure effectively “invisible.” It then delivers access to authorized resources only, verifying a number of user variables each session—including device posture and identity—before granting access to an application. Once the user logs out, the secure tunnel disappears. Additionally, when a new device is on a public network, or a device that failed to log in tries to connect, additional security requirements (such as multi-factor authentication) can be enforced, or access can be denied.Download our infographic on AppGate’s context aware, dynamic approach to secure access to learn more.

Download "Infographic: AppGate’s context aware, dynamic approach to secure access "

Cryptzone Office 365 Security Survey

With the widespread growth of cloud applications, we surveyed organizations to look at adoption of the Microsoft Office 365 platform. The survey addressed how organizations are utilizing Office 365 and SharePoint, where they have limitations, what applications they are using from the platform, and how organizations perceive the security of Office 365 for controlling sensitive data.

Download "Cryptzone Office 365 Security Survey"

Cryptzone Network Security Survey

Given the proliferation of cybercrimes and growing concerns over inside threats, Cryptzone conducted a survey with TechValidate to determine how organizations are implementing network access control (NAC) policies and security solutions to address today’s network environments.

Download "Cryptzone Network Security Survey"

​The Global Move to WCAG 2.0 and The Case for Conformance

Accessibility for people with disabilities is more important now than ever before. The last decade has shown how information technology (particularly the Internet) opens up new worlds for an ever-increasing number of people with disabilities. At the same time, Web accessibility standards have also evolved to keep pace. This white paper explains the global trend to adopt the Web Accessibility Content Guidelines (WCAG 2.0) – the most important and influential Web accessibility standard worldwide — and why it provides a better accessibility experience for users with disabilities.

Download "​The Global Move to WCAG 2.0 and The Case for Conformance"

Four Steps to Readily Achievable Web Accessibility

In the absence of specific regulations for Web accessibility in the Americans with Disabilities Act (ADA), businesses are left without legal guidance on how to make their complex websites accessible. Some advocate for full compliance with WCAG 2.0 in all content while others argue that nothing is required at all. This white paper discusses the risks to businesses that do not employ Web accessibility citing recent lawsuits, and suggests some best practices for readily achievable Web accessibility that any business can employ.

Download "Four Steps to Readily Achievable Web Accessibility"

Guidance at a Glance: Web Accessibility

Do you know what where to start or how to improve your Web accessibility? If you are not sure what to do, download our whitepaper to help you kick start or improve your existing Web accessibility program to meet compliance.

Download "Guidance at a Glance: Web Accessibility"

The Changing Legal Landscape of Web Accessibility in Higher Education

Universities face liability if their Web content is inaccessible under Section 504 and other laws. This is further complicated by new laws and regulations that change some of these obligations, but also the standards for what constitutes “accessible” Web content. Colleges and universities also face the increasing chance of liability due to disability rights organizations filing more complaints and lawsuits based on these laws. The lawsuits filed are also extending liability beyond the Web to include other new technologies used in education. This white paper will provide guidance on the changing legal landscape of Web accessibility in higher education.

Download "The Changing Legal Landscape of Web Accessibility in Higher Education"

​Is Permissions Inheritance the Best Method for Governing SharePoint Access?

SharePoint is purchased for a number of reasons, but generally the primary purpose is to foster the collaboration and information sharing required in order to achieve these objectives. But opening up documents for sharing can open up a can of worms when it comes to security. This white paper will look at the issues around securing documents in the context of Microsoft's recommended inheritance model, which defines permissions and allows them to be inherited through all sites, lists, libraries, folders and items.

Download "​Is Permissions Inheritance the Best Method for Governing SharePoint Access?"

​The Do’s and Don’ts of Enterprise Collaboration: 22 Tips to Ensure Secure Collaboration

Collaboration is a critical part of business success and a key driver for increasing competitiveness and productivity. If you are using enterprise collaborative environments from SharePoint to file shares, or even social platforms, you do not want to find yourself in a position where you are scrambling to retrofit security measures after the mishandling of sensitive data, or worse a data breach.

Download "​The Do’s and Don’ts of Enterprise Collaboration: 22 Tips to Ensure Secure Collaboration"

​Folders vs Metadata: 7 Questions to Assess the Best Method for SharePoint Security

Many companies have a hard time choosing whether to use folders or metadata for security and classification in SharePoint. The problem is that out-of-the-box neither folders nor metadata can achieve effective security and classification in SharePoint.This white paper outlines the seven most commonly asked questions on using folders versus metadata for SharePoint security. It provides insight and solutions for more secure and effective document security.

Download "​Folders vs Metadata: 7 Questions to Assess the Best Method for SharePoint Security"

​The Top 10 SharePoint Security Challenges with Collaboration

Many companies have invested in SharePoint for managing their unstructured information and fostering enterprise collaboration. However, few have fully realized the potential efficiencies and productivities that SharePoint offers because of concerns about the security of the information stored in it. This white paper looks at the top 10 security challenges with SharePoint collaboration facing executives and IT managers today.

Download "​The Top 10 SharePoint Security Challenges with Collaboration"

​Microsoft SharePoint® Security: Part 2 - Evaluating a Content Security Solution

Microsoft SharePoint® Security: Part 2 provides insight into enforcing SharePoint policies and offers guidance on what to look for when evaluating a content security solution.

Download "​Microsoft SharePoint® Security: Part 2 - Evaluating a Content Security Solution"

​Microsoft SharePoint Security: Part 1 - The Security, Compliance and Risk Case

With SharePoint serving as the ECM and collaboration tool of choice for enterprises, many do not recognize the risks until it is too late.

Download "​Microsoft SharePoint Security: Part 1 - The Security, Compliance and Risk Case"

​Making SharePoint Safe for Sensitive Data

SharePoint promises to solve many of today’s ECM challenges. But concerns persist about SharePoint's use for the management of private or sensitive content.

Download "​Making SharePoint Safe for Sensitive Data"

Best Practices in SharePoint Content Checklist: SharePoint Adoption and Security in 5 Easy Steps

As you deploy SharePoint® 2010, you have considered the technical aspects — but have you considered the content? How will it be migrated, accessed and secured while encouraging collaboration?

Download "Best Practices in SharePoint Content Checklist: SharePoint Adoption and Security in 5 Easy Steps"

Leveraging SharePoint for HIPAA Governed Data: 5 Conquerable Challenges to Meeting HIPAA Compliance in SharePoint

You know you need to be HIPAA compliant. However, achieving compliance, while still allowing employees to collaborate in SharePoint, is not easy. Healthcare organizations looking to leverage SharePoint for collaboration often struggle with a number of issues trying to meet compliance with the strict requirements set by HIPAA. Download this white paper to learn how to conquer the barriers to collaboration in SharePoint. Discover how technology can help your organization safely leverage SharePoint for the storage and collaboration of PHI and other confidential material.

Download "Leveraging SharePoint for HIPAA Governed Data: 5 Conquerable Challenges to Meeting HIPAA Compliance in SharePoint"

SharePoint's 5 Most Wanted Governance Offenders: Plus 4 Ways to Stop Them in Their Tracks

We set out to find the top 5 governance offenders and the characters we uncovered might surprise you. This infographic exposes SharePoint’s Most Wanted characters, their sometimes risky behavior and annoying habits. It also offers 4 things you can do to stop them in their tracks, to ensure only the right people have access to the right content.

Download "SharePoint's 5 Most Wanted Governance Offenders: Plus 4 Ways to Stop Them in Their Tracks"

Infographic: Managing Information Security and Compliance in SharePoint and Office 365

Effective information security and compliance not only requires a well defined governance strategy, but also the ability to manage risk by putting controls in place to identify issues and potential violations, restrict actions that can be taken with sensitive data and log activity. This illustrated guide lays out each step; from defining your strategy, to implementing Cryptzone's solutions for dynamically managing security in SharePoint and Office 365 to help protect your organization's data and meet compliance goals.

Download "Infographic: Managing Information Security and Compliance in SharePoint and Office 365"

Does your Citrix or Terminal Server environment have an Achilles heel?

This white paper will highlight the information security risks inherent in all multi-user virtual desktop solutions, and offer a better way to secure access using a 'zero trust' security methodology.

Download "Does your Citrix or Terminal Server environment have an Achilles heel?"

Preventing Cyber Attacks with a Layered Network Security Model

This white paper looks at the IT landscape today and why traditional models are failing. It also explores how a layered defense, built on the principles of Zero Trust, can be used to combat cyber attacks involving privileged user accounts and enable organizations to regain control over their networks and mitigate risk.

Download "Preventing Cyber Attacks with a Layered Network Security Model"

Addressing Auditors Compliance Requirements with Secure Access

Regulatory compliance is a critical concern for many organizations. However, implementing the proper security controls and demonstrating compliance places a considerable burden on system administrators and can become very costly. Compliance with regulations, such as SOX, FISMA, PCI, FSA and SCC has always been challenging, but is especially difficult when adherence to multiple regulations is required.

Download "Addressing Auditors Compliance Requirements with Secure Access"

Why Recognition, not Identity should underpin Access Permissions

This short white paper introduces the concept of recognition, where identity becomes, only one dynamic attribute amongst many, used to determine user authenticity and grant access permissions, in order to minimize IT security exposure in line with risk based policies.

Download "Why Recognition, not Identity should underpin Access Permissions"

Cryptzone Survey Reveals SharePoint Users are Breaching Security Policies

This study, conducted amongst attendees at Microsoft’s SharePoint Conference in Las Vegas (USA) found that at least 36% of SharePoint users are breaching security policies, and gaining access to sensitive and confidential information, to which they are not entitled. Read the survey for more findings and SharePoint security recommendations.

Download "Cryptzone Survey Reveals SharePoint Users are Breaching Security Policies"

Infographics


eBook/Infographic: The Aftermath of a Breach and Steps to Reduce Risk

The number of data breaches hit a record high in 2014 – and 2015 is not looking any better. In the US alone to date there have been 591 reported breaches, exposing more than 175,443,888 individuals’ personally identifiable information (PII), payment card details, protected healthcare data (PHI) and/or other private information. Our eBook looks at the aftermath of a breach, from costs to the areas of vulnerability and common attack vectors. But don’t despair, we also offer 7 ways to protect against breaches and reduce risk.

Download "eBook/Infographic: The Aftermath of a Breach and Steps to Reduce Risk"

Infographic: AppGate’s context aware, dynamic approach to secure access

AppGate Secure Access makes the application/server infrastructure effectively “invisible.” It then delivers access to authorized resources only, verifying a number of user variables each session—including device posture and identity—before granting access to an application. Once the user logs out, the secure tunnel disappears. Additionally, when a new device is on a public network, or a device that failed to log in tries to connect, additional security requirements (such as multi-factor authentication) can be enforced, or access can be denied.Download our infographic on AppGate’s context aware, dynamic approach to secure access to learn more.

Download "Infographic: AppGate’s context aware, dynamic approach to secure access "

SharePoint's 5 Most Wanted Governance Offenders: Plus 4 Ways to Stop Them in Their Tracks

We set out to find the top 5 governance offenders and the characters we uncovered might surprise you. This infographic exposes SharePoint’s Most Wanted characters, their sometimes risky behavior and annoying habits. It also offers 4 things you can do to stop them in their tracks, to ensure only the right people have access to the right content.

Download "SharePoint's 5 Most Wanted Governance Offenders: Plus 4 Ways to Stop Them in Their Tracks"

Infographic: Managing Information Security and Compliance in SharePoint and Office 365

Effective information security and compliance not only requires a well defined governance strategy, but also the ability to manage risk by putting controls in place to identify issues and potential violations, restrict actions that can be taken with sensitive data and log activity. This illustrated guide lays out each step; from defining your strategy, to implementing Cryptzone's solutions for dynamically managing security in SharePoint and Office 365 to help protect your organization's data and meet compliance goals.

Download "Infographic: Managing Information Security and Compliance in SharePoint and Office 365"

Security Guides


PCI DSS v3 Compliance Security Guide

This document summarises the twelve Payment Card Industry (PCI) Data Security Standard (DSS) Requirements and Security Assessment Procedures, and highlights some of the new updates in Version 3.0. The context is however limited to many areas in which the use of Cryptzone’s AppGate Server can deliver compliance against the standard.

Read the PCI DSS v3 Compliance Security Guide Security Guide