HIPAA compliance is a cornerstone for protecting sensitive patient data in hospital information systems. From a compliance management perspective, HIPAA can be a tedious framework to work with. Turning the requirements into hard rules isn’t…
Read MoreAccording to Gartner, 95 percent of the security failures in public cloud environments through 2020 will be the customer’s fault rather than the cloud service provider’s. As businesses continue to migrate production workloads and valuable…
Read MoreAt the Gartner Security and Risk Management Summit in National Harbor, Sid Deshpande, a Gartner security analyst, talked about how organizations are most willing to spend on information security immediately after a breach. In doing…
Read MoreThis is the first in a series of short, ‘pragmatic’ cloud security posts. This time we’ll be covering AWS S3 Buckets. Intro AWS S3 is a very popular cloud based file / object storage service.…
Read MoreAWS CloudFormation Templates (CFT) are designed to simplify deployment and management on AWS. CFTs have come a long way from being a declarative infrastructure blueprint. Power users of AWS CloudFormation now create CFTs which act…
Read MoreProperly logging and storing your security access logs is always important, and Dome9 logs are no exception to this. Through our SNS integration, customers are already able to take events and push them into the…
Read MorePreface The missing piece – Customization First try – General Purpose Language (aka Internal DSL) Next try – External DSL Meet Dome9 GSL – Governance Specification Language The language syntax The domain model Execution Engine…
Read MoreLast September, Dome9 announced the availability of the new Dome9 Compliance Engine that radically simplifies tracking, reporting and enforcement of compliance and security best practices in the public cloud. The Compliance Engine automates data gathering…
Read MoreIf you need any further justification to avoid embedding AWS credentials in code (hint: you really shouldn’t) – have a look at Truffle Hog. It’s an open source project that searches for keys containing high-entropy…
Read MoreDome9 Brings Trademark Security Intelligence To Microsoft Azure We’re excited to share with you that today Dome9 Security announced native, agentless support for Microsoft Azure, the second such infrastructure as a service (IaaS) platform to benefit from the…
Read More