Secu­ri­ty Blog

HR as a gate­way for attacks: The HR depart­ment has no firewall

Cyberattacks proceed just as they did in the analog world over 100 years ago. They are based on communication and knowledge of confidential information. While applications, networks and other technical details are always the subject of intense discussion in the Internet age, people forget about the parts of information security that have little or no [...]

Von |2024-04-19T18:38:44+02:0002.09.2017|Blog EN|

HR als Ein­falls­tor für Angrif­fe: Die Per­so­nal­ab­tei­lung hat kei­ne Firewall

Cyberattacken verlaufen genauso wie in der analogen Welt vor über 100 Jahren. Sie basierend auf Kommunikation und dem Wissen über vertrauliche Informationen. Zwar werden im Internetzeitalter immer wieder Applikationen, Netzwerke und andere technische Details intensiv diskutiert, aber man vergisst dabei die Stellen in der Informationssicherheit, die kaum oder gar nicht geschützt sind: Die Wechselwirkung zwischen [...]

Von |2022-11-06T09:59:57+01:0002.09.2017|Blog|

Secu­ri­ty Pen­Test of the net­work infrastructure

The digital infrastructure - the IT network - is the basis for daily work in companies and entertainment at home. As long as everything works, nothing is usually questioned. But when problems occur, it is long too late. Despite several decades of development in system administration and information security, security tests still find weak points [...]

Von |2022-11-06T10:00:07+01:0023.07.2017|Blog EN|

Bit­Lo­cker Ver­schlüs­se­lung im Sin­ne der DSGVO

Wir freuen und den neuen "Leitfaden zur Nutzung von Endgeräte-Verschlüsselung mit Microsoft BitLocker im Sinne der DSGVO" anzukündigen. Der SEC4YOU Leitfaden betrachtet die Anforderungen der Europäischen Datenschutz-Grundverordnung (DSGVO) und gibt konkrete Handlungsempfehlungen für den Einsatz am Client. Aus dem Inhalt Bewertung der Schutzziele für BitLocker (BL) - Seite 7 Bewertung der technischen Implementierung von BL- [...]

Von |2017-08-02T17:34:19+02:0003.07.2017|Blog, Datenschutz|

Bit­Lo­cker encryp­ti­on in terms of GDPR

We are pleased to announce the new "Guide to the use of endpoint encryption with Microsoft BitLocker in terms of the GDPR". The SEC4YOU guide looks at the requirements of the European General Data Protection Regulation (GDPR) and provides concrete recommendations for client deployment. From the content Evaluation of protection goals for BitLocker (BL) - [...]

Von |2022-11-06T10:00:24+01:0003.07.2017|Blog EN, Data protection|

Event: Cyber secu­ri­ty shows tee­th on Oct. 12, 2017

The local Austrian chapters of both ISACA and (ISC)2 invite you to a full-day event in the Bassano Hall of the Kunsthistorisches Museum on October 12, 2017 under the topic "Cyber Security Shows Teeth - Trends | Regulations | Requirements | Developments 2017+". In line with the theme, the planned presentations will focus on different [...]

Von |2022-11-06T10:00:34+01:0025.06.2017|Blog EN, Data protection, Events|

Event: Cyber Sicher­heit zeigt Zäh­ne am 12. Okt. 2017

Die lokalen österreichischen Chapter sowohl der ISACA als auch der (ISC)2 laden am 12. Oktober 2017 unter dem Thema "Cyber Sicherheit zeigt Zähne - Trends | Regularien | Vorgaben | Entwicklungen 2017+" zu einem ganztägigen Event im Bassano Saal des Kunsthistorischen Museums. Ganz im Sinne des Themas wird in den geplanten Vorträgen auf unterschiedlichen Ebenen [...]

Semi­nar: IT Secu­ri­ty / Infor­ma­ti­on Secu­ri­ty on 13–14 Nov. 2017

AIR will host a seminar titled "IT Security / Information Security" from November 13-14, 2017 in Vienna focused from an audit perspective. Seminar topic: IT security is very often understood as technical measures that are intended to selectively address specific vulnerabilities. From the auditing point of view, these measures are part of a superordinate internal [...]

Von |2022-11-06T10:00:43+01:0025.06.2017|Blog EN, Events|

Semi­nar: IT-Secu­ri­ty / Infor­ma­ti­on Secu­ri­ty am 13.–14. Nov. 2017

Die AIR veranstaltet von 13.-14. November 2017 ein Seminar mit dem Titel "IT-Security / Information Security" in Wien fokussiert aus Sicht der Revision. Seminarthema: Unter IT-Security werden sehr oft technische Maßnahmen verstanden, die punktuell bestimmte Schwachstellen beheben sollen. Aus Sicht der Revision sind diese Maßnahmen Teil eines übergeordneten internen Kontrollsystems und müssen dahin gehend gestaltet [...]

Nach oben