Security Basics mailing list archives

A proactive internal threat mitigation program


From: "WALI" <hkhasgiwale () gmail com>
Date: Sat, 11 Dec 2010 11:27:40 +0400

Guys

I was thinking of implimenting a proactive internal threat mitigation program. Something the sort of SIEM vendors often talk about but are very lousy in their detail plans.

Given the fact that we are not a Banking/ financial institution, the external threats are not something to be overtly worried about. what I might be worried about would be things like, people trying to log into from other's workstations and creating account lockout instances, people trying to access C$ shares on others desktops, people trying to access other's mailboxes by typing other's mailbox name via OWA in the URL field of their browser etc.

In an overall Microsoft environment, what other factors would amount to proactive security profiling from internal malicious threats?

Has someone been there and done that?

WALI

------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, how 
it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, 
install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are 
highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------


Current thread: