<?xml version="1.0" encoding="iso-8859-1" ?>
<rss version="2.0" xmlns:s="http://updates.zdnet.com/">
<channel>
	<title><![CDATA[security policy Resources | ZDNet]]></title>
	<link><![CDATA[http://updates.zdnet.com/tags/security+policy.html]]></link>
	<description><![CDATA[White papers, case studies, technical articles, and blog posts relating to security policy]]></description>
	<s:counts start="0" returned="20" found="21" />
	<language>en-us</language>
	<item>
		<title><![CDATA[Altor Networks Altor VF 3.0: VMsafe Virtual Firewall]]></title>
		<link><![CDATA[http://blogs.zdnet.com/virtualization/?p=1049]]></link>
		<description><![CDATA[Security in virtual environments can be a challenging area because there are so many different entities needing protection. In a virtual server environment, layers of security are needed for the underlying hypervisor and for each of the virtual servers. If not implemented correctly, security could become an awful load for...]]></description>
		<s:doctype><![CDATA[Blog posts]]></s:doctype>
		<pubDate>Wed, 15 Jul 2009 02:00:16 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/firewall.html"><![CDATA[Firewall]]></category>
		<category domain="http://updates.zdnet.com/tags/hypervisor.html"><![CDATA[Hypervisor]]></category>
		<category domain="http://updates.zdnet.com/tags/network.html"><![CDATA[Network]]></category>
		<category domain="http://updates.zdnet.com/tags/environment.html"><![CDATA[Environment]]></category>
		<category domain="http://updates.zdnet.com/tags/altor+networks.html"><![CDATA[Altor Networks]]></category>
		<category domain="http://updates.zdnet.com/tags/altor+vf.html"><![CDATA[Altor VF]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/vm.html"><![CDATA[VM]]></category>
		<category domain="http://updates.zdnet.com/tags/virtualization.html"><![CDATA[Virtualization]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/hardware.html"><![CDATA[Hardware]]></category>
		<category domain="http://updates.zdnet.com/tags/dan+kusnetzky.html"><![CDATA[Dan Kusnetzky]]></category>
	</item>
	<item>
		<title><![CDATA[A Novel Validation Method for Firewall Security Policy]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=1174507]]></link>
		<description><![CDATA[A Security Policy constitutes the core of network protection infrastructure. Thus, its development is a sensitive task because it can appears in opposition with some security requirements. A validation process for security policies becomes then necessary before their deployment. Nowadays, there is no automated tool in the network security world...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Wed, 10 Jun 2009 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/software.html"><![CDATA[Software]]></category>
		<category domain="http://updates.zdnet.com/tags/software+engineering.html"><![CDATA[Software Engineering]]></category>
		<category domain="http://updates.zdnet.com/tags/firewall.html"><![CDATA[Firewall]]></category>
		<category domain="http://updates.zdnet.com/tags/network.html"><![CDATA[Network]]></category>
		<category domain="http://updates.zdnet.com/tags/dynamic+publishers.html"><![CDATA[Dynamic Publishers]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/networking.html"><![CDATA[Networking]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/network+security.html"><![CDATA[Network Security]]></category>
	</item>
	<item>
		<title><![CDATA[Automatic Verification of Firewall Configurations With Respect to Security Policy Requirements]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=1174619]]></link>
		<description><![CDATA[A firewall is a key security component in computer networks. It filters network traffic based on an ordered list of filtering rules. Firewall configurations must be correct and complete with respect to security policies. A security policy is a set of predicates, which is a high level description of traffic...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Wed, 10 Jun 2009 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/firewall+configuration.html"><![CDATA[Firewall Configuration]]></category>
		<category domain="http://updates.zdnet.com/tags/dynamic+publishers.html"><![CDATA[Dynamic Publishers]]></category>
		<category domain="http://updates.zdnet.com/tags/firewalls.html"><![CDATA[Firewalls]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/network+security.html"><![CDATA[Network Security]]></category>
		<category domain="http://updates.zdnet.com/tags/networking.html"><![CDATA[Networking]]></category>
	</item>
	<item>
		<title><![CDATA[Dangerous Collaboration Practices in a Challenging Economy: 5 Roles IT Must Perform to Minimize Risk]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=1174519]]></link>
		<description><![CDATA[The changing economy presents daunting challenges in information security. Companies are pressed to collaborate with more and more outside partners, and many business processes - due diligence, compliance, product development, sales and marketing - involve sharing of confidential information. The demands for productivity and speed drive executives and project team...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Fri, 15 May 2009 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/information+technology.html"><![CDATA[Information Technology]]></category>
		<category domain="http://updates.zdnet.com/tags/brainloop.html"><![CDATA[Brainloop]]></category>
		<category domain="http://updates.zdnet.com/tags/collaboration.html"><![CDATA[Collaboration]]></category>
		<category domain="http://updates.zdnet.com/tags/groupware.html"><![CDATA[Groupware]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/product+development.html"><![CDATA[Product Development]]></category>
		<category domain="http://updates.zdnet.com/tags/strategy.html"><![CDATA[Strategy]]></category>
		<category domain="http://updates.zdnet.com/tags/security+administration.html"><![CDATA[Security Administration]]></category>
		<category domain="http://updates.zdnet.com/tags/enterprise+software.html"><![CDATA[Enterprise Software]]></category>
		<category domain="http://updates.zdnet.com/tags/software.html"><![CDATA[Software]]></category>
		<category domain="http://updates.zdnet.com/tags/research+%2526+development.html"><![CDATA[Research & Development]]></category>
		<category domain="http://updates.zdnet.com/tags/business+operations.html"><![CDATA[Business Operations]]></category>
		<category domain="http://updates.zdnet.com/tags/management.html"><![CDATA[Management]]></category>
	</item>
	<item>
		<title><![CDATA[Achieving Compliance Through Transaction-Based Re-Authentication]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=1090713]]></link>
		<description><![CDATA[Enterprises which operate under strict regulations, have implemented exacting security policies or may have a strong need to confirm and trace sensitive business transactions in detail. Examples include release of a high value purchase order, pre-paid expenses, invoices, signing off on a drug quality control check or confirming participation in...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Mon, 20 Apr 2009 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/compliance.html"><![CDATA[Compliance]]></category>
		<category domain="http://updates.zdnet.com/tags/sap+ag.html"><![CDATA[SAP AG]]></category>
		<category domain="http://updates.zdnet.com/tags/regulations.html"><![CDATA[Regulations]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/government.html"><![CDATA[Government]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">SAP</category>
		<category domain="tickers">SAP</category>
	</item>
	<item>
		<title><![CDATA[Constraint-Based Secure Information Flow Inference for a Java-Like Language]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=904475]]></link>
		<description><![CDATA[This paper addresses the problem of checking programs written in a Java-like language, to ensure that they satisfy information flow policies like confidentiality and integrity in the presence of dynamic access control mechanisms like stack inspection. Security policy is specified using permission dependent security types. The paper presents an inference...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Thu, 01 Jan 2009 00:00:00 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/java.html"><![CDATA[Java]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
	</item>
	<item>
		<title><![CDATA[Verify Consistency Between Security Policy and Firewall Policy With Answer Set Programming]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=1021877]]></link>
		<description><![CDATA[Firewalls are core elements in network security, the effectiveness of firewall security is dependent on configuring firewall policy correctly. Firewall policy is a lower-level policy which describes how firewall actually implements security policy. Security policy is a higher-level policy which defines the access that will be permitted or denied from...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Sat, 18 Oct 2008 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/programming.html"><![CDATA[Programming]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/firewall+policy.html"><![CDATA[Firewall Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/firewall+policy.html"><![CDATA[Firewall Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/firewalls.html"><![CDATA[Firewalls]]></category>
		<category domain="http://updates.zdnet.com/tags/network+security.html"><![CDATA[Network Security]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/networking.html"><![CDATA[Networking]]></category>
	</item>
	<item>
		<title><![CDATA[SPML: A Visual Approach for Modeling Firewall Configurations]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=1021171]]></link>
		<description><![CDATA[This paper describes a graphical notation for modeling security policy, currently focused on firewalls, named SPML. Using SPML, it is possible to specify graphically the security policy to be implemented by firewalls and to configure firewalls at high level, since the rules can be translated to native configuration. To present...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Tue, 16 Sep 2008 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/modeling.html"><![CDATA[Modeling]]></category>
		<category domain="http://updates.zdnet.com/tags/research+%2526+development.html"><![CDATA[Research & Development]]></category>
		<category domain="http://updates.zdnet.com/tags/firewalls.html"><![CDATA[Firewalls]]></category>
		<category domain="http://updates.zdnet.com/tags/network+security.html"><![CDATA[Network Security]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/business+operations.html"><![CDATA[Business Operations]]></category>
		<category domain="http://updates.zdnet.com/tags/networking.html"><![CDATA[Networking]]></category>
	</item>
	<item>
		<title><![CDATA[SNAF - Securing Networks with ASA Fundamentals]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=360530]]></link>
		<description><![CDATA[View Available Dates and LocationsIn this Authorized Cisco course, you will gain the knowledge and skills  needed to configure, maintain, and operate Cisco ASA 5500 Series Adaptive  Security.  We have enhanced our delivery of SNAF by adding depth to the existing  Cisco-developed hands-on labs. In a...]]></description>
		<s:doctype><![CDATA[Training]]></s:doctype>
		<pubDate>Sun, 01 Jun 2008 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/security+appliance.html"><![CDATA[Security Appliance]]></category>
		<category domain="http://updates.zdnet.com/tags/network.html"><![CDATA[Network]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/cisco+systems+inc..html"><![CDATA[Cisco Systems Inc.]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">CSCO</category>
		<category domain="tickers">CSCO</category>
	</item>
	<item>
		<title><![CDATA[Why a Security Policy?]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=360928]]></link>
		<description><![CDATA[A security policy, in its purest sense, is a document or set of documents that defines how an organization intends to protect its assets. By definition, a security policy provides high-level guidance for the organization but does not specifically cover technologies or techniques. This paper shows how to create a...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Tue, 22 Apr 2008 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
	</item>
	<item>
		<title><![CDATA[AirStop 2.3.6 (Windows)]]></title>
		<link><![CDATA[http://downloads.zdnet.com/abstract.aspx?docid=622211]]></link>
		<description><![CDATA[wireless security softwareAirStopÃ‚Â® is an endpoint security solution which prevents data leakage by controlling all communications adapters and storage devices on laptop and desktop computers. Designed as an enterprise applications, the software enforces security policy by allowing a single communications adapter to be used during a given computing session. In...]]></description>
		<s:doctype><![CDATA[Software downloads]]></s:doctype>
		<pubDate>Sat, 01 Mar 2008 00:00:00 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/network.html"><![CDATA[Network]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+windows.html"><![CDATA[Microsoft Windows]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/airstop+server+module.html"><![CDATA[AirStop Server Module]]></category>
		<category domain="http://updates.zdnet.com/tags/wi-fi.html"><![CDATA[Wi-Fi]]></category>
		<category domain="http://updates.zdnet.com/tags/wireless.html"><![CDATA[Wireless]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
	</item>
	<item>
		<title><![CDATA[Evil Insider Vs. Network Admission Control]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=348533]]></link>
		<description><![CDATA[Having an effective security policy is one thing. Enforcing it is quite another  especially with the explosive growth of remote and wireless access. How to protect network from this insider threat? The webcast discover how to implement Network Admission Control NAC and consistently enforce security policies at every end...]]></description>
		<s:doctype><![CDATA[Webcasts]]></s:doctype>
		<pubDate>Sat, 01 Dec 2007 00:00:00 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/insider+threat.html"><![CDATA[Insider Threat]]></category>
		<category domain="http://updates.zdnet.com/tags/network.html"><![CDATA[Network]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/cisco+systems+inc..html"><![CDATA[Cisco Systems Inc.]]></category>
		<category domain="http://updates.zdnet.com/tags/networking.html"><![CDATA[Networking]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://rss.financialcontent.com/stocksymbol">CSCO</category>
		<category domain="tickers">CSCO</category>
	</item>
	<item>
		<title><![CDATA[Raksha: A Flexible Information Flow Architecture for Software Security]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=916773]]></link>
		<description><![CDATA[This paper proposes Raksha, an architecture for software security based on Dynamic Information Flow Tracking DIFT. Raksha provides three novel features that allow for a flexible hardware/ software approach to security. First, it supports flexible and programmable security policies that enable software to direct hardware analysis towards a wide range...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Wed, 13 Jun 2007 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/software.html"><![CDATA[Software]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/association+for+computing+machinery.html"><![CDATA[Association For Computing Machinery]]></category>
		<category domain="http://updates.zdnet.com/tags/analysis.html"><![CDATA[Analysis]]></category>
		<category domain="http://updates.zdnet.com/tags/raksha.html"><![CDATA[Raksha]]></category>
		<category domain="http://updates.zdnet.com/tags/tools+%2526+techniques.html"><![CDATA[Tools & Techniques]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/management.html"><![CDATA[Management]]></category>
	</item>
	<item>
		<title><![CDATA[Security Model for Windows Mobile 5.0 and Windows Mobile 6]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=349557]]></link>
		<description><![CDATA[Windows Mobile-powered devices employ a combination of security policies, roles, and certificates to address configuration, remote access, and application execution. Security policies provide the flexibility to control access to the device. If a user or application is allowed access, security policies then control the boundaries for actions, access and functionality. ]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Thu, 01 Mar 2007 00:00:00 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/microsoft+windows+mobile+5.0.html"><![CDATA[Microsoft Windows Mobile 5.0]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+windows+mobile.html"><![CDATA[Microsoft Windows Mobile]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+windows+mobile+6.html"><![CDATA[Microsoft Windows Mobile 6]]></category>
		<category domain="http://updates.zdnet.com/tags/microsoft+windows.html"><![CDATA[Microsoft Windows]]></category>
		<category domain="http://updates.zdnet.com/tags/operating+systems.html"><![CDATA[Operating Systems]]></category>
		<category domain="http://updates.zdnet.com/tags/handhelds.html"><![CDATA[Handhelds]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/software.html"><![CDATA[Software]]></category>
		<category domain="http://updates.zdnet.com/tags/hardware.html"><![CDATA[Hardware]]></category>
	</item>
	<item>
		<title><![CDATA[Enforcing Security Enhanced Linux Policies in a Networked Policy Domain]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=295955]]></link>
		<description><![CDATA[Significant progress toward general acceptance of applying mandatory access control to systems has been made recently. Security Enhanced Linux SELinux, in particular, has been enabled by default in some Linux distributions for several years. However, current SELinux deployments only effectively control a single system. Inter-system and remote resource access control...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Sun, 04 Feb 2007 00:00:00 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/domain.html"><![CDATA[Domain]]></category>
		<category domain="http://updates.zdnet.com/tags/access+control.html"><![CDATA[Access Control]]></category>
		<category domain="http://updates.zdnet.com/tags/tresys+technology.html"><![CDATA[Tresys Technology]]></category>
		<category domain="http://updates.zdnet.com/tags/linux.html"><![CDATA[Linux]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
		<category domain="http://updates.zdnet.com/tags/operating+systems.html"><![CDATA[Operating Systems]]></category>
		<category domain="http://updates.zdnet.com/tags/software.html"><![CDATA[Software]]></category>
	</item>
	<item>
		<title><![CDATA[IT Security Policy Checklist]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=173000]]></link>
		<description><![CDATA[By David M Davis, CCIE, MCSEAn IT Security Policy should be a place to standardize and document company-wide security practices. This checklist provides a comprehensive list of issues that should be covered and recommends a variety of security policy best practices.Join the discussion for this download to add your recommendations...]]></description>
		<s:doctype><![CDATA[Download resources]]></s:doctype>
		<pubDate>Wed, 27 Apr 2005 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/checklist.html"><![CDATA[Checklist]]></category>
		<category domain="http://updates.zdnet.com/tags/techrepublic+inc..html"><![CDATA[TechRepublic Inc.]]></category>
		<category domain="http://updates.zdnet.com/tags/it+security.html"><![CDATA[IT Security]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/information+technology.html"><![CDATA[Information Technology]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
	</item>
	<item>
		<title><![CDATA[Mitnick: Security depends on workers' habits]]></title>
		<link><![CDATA[http://talkback.zdnet.com/5208-1009-0.html?forumID=1&threadID=8691&messageID=174825&start=0]]></link>
		<description><![CDATA[Mitnick: Security depends on workers' habitsOf course.I'm becoming more convinced that most security breaches come by the choice of the user, whether by authorizing an installation of software or by providing information.He makes another good point:  a tight, rigorous security policy will be an entire failure.  People resent...]]></description>
		<s:doctype><![CDATA[Discussion threads]]></s:doctype>
		<pubDate>Fri, 04 Mar 2005 14:33:00 -0800</pubDate>
		<category domain="http://updates.zdnet.com/tags/worker.html"><![CDATA[worker]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[security]]></category>
		<category domain="http://updates.zdnet.com/tags/directive.html"><![CDATA[directive]]></category>
		<category domain="http://updates.zdnet.com/tags/mitnick.html"><![CDATA[Mitnick]]></category>
		<category domain="http://updates.zdnet.com/tags/password.html"><![CDATA[password]]></category>
		<category domain="http://updates.zdnet.com/tags/gut.html"><![CDATA[gut]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[security policy]]></category>
	</item>
	<item>
		<title><![CDATA[SSO: Enabling an Effective Password Policy]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=57975]]></link>
		<description><![CDATA[Security policies are essential to any enterprise's overall security program. Policies allow the organization to define its security goals and objectives while also providing a framework to assist organizations in determining the proper level of security for each facet of the business. The most effective policies are embraced by employees...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Thu, 26 Jun 2003 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/password.html"><![CDATA[Password]]></category>
		<category domain="http://updates.zdnet.com/tags/password+policy.html"><![CDATA[Password Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/single+sign-on.html"><![CDATA[Single Sign-on]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/authentication%252fencryption.html"><![CDATA[Authentication/Encryption]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
	</item>
	<item>
		<title><![CDATA[Building and Implementing a Successful Information Security Policy]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=71436]]></link>
		<description><![CDATA[The purpose of this paper is to outline the strategies and managing processes behind implementing a successful Security Policy. There are recommendations for the creation of a Security Awareness Program, where the main objective will be to provide staff members with a better, if not much improved understanding of the...]]></description>
		<s:doctype><![CDATA[White papers]]></s:doctype>
		<pubDate>Thu, 12 Jun 2003 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/information+security.html"><![CDATA[Information Security]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/windowssecurity.com.html"><![CDATA[WindowsSecurity.com]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
	</item>
	<item>
		<title><![CDATA[Explain security policies with this presentation]]></title>
		<link><![CDATA[http://whitepapers.zdnet.com/abstract.aspx?docid=172446]]></link>
		<description><![CDATA[This PowerPoint presentation will help you educate end users on your organization's security policies. Modify the slides to meet your organization's needs, and use the presentation to enlist user support in the fight against security breaches. ]]></description>
		<s:doctype><![CDATA[Download resources]]></s:doctype>
		<pubDate>Wed, 19 Jun 2002 00:00:00 -0700</pubDate>
		<category domain="http://updates.zdnet.com/tags/techrepublic+inc..html"><![CDATA[TechRepublic Inc.]]></category>
		<category domain="http://updates.zdnet.com/tags/security+policy.html"><![CDATA[Security Policy]]></category>
		<category domain="http://updates.zdnet.com/tags/security.html"><![CDATA[Security]]></category>
	</item>
</channel>
</rss>
