Press Releases
Preventia announces partnership with Mobile Active Defense - 02 November 2011
Mobile Active Defense - mobile, tablet and pad security in the UK
Mobile Active Defense M.A.D. has over 100 years combined experience in security hardware and software product design and development, marketing, sales and support. M.A.D. Partners’ mission is to create innovative, high quality and easy to use security solutions for smartphones, pads and tablets.
Mobile Active Defense locks down, secures and puts your iPhones, iPads, Androids, other smartphones and tablets into regulatory compliance.
By employing the most stringent security standards and enforcement mechanisms, the Mobile Enterprise Compliance and Security (MECS) Server enforces policy across your entire mobile enterprise.
MECS gives you device management, security controls, remediation, compliance and centralized administration over your mobile workforce. The MECS Server extends your existing enterprise and network security policies the same level ofcontrol you already enjoy in your existing fixed infrastructure.

Preventia names Steve O’Donnell as Chairman and non-executive Director. May 3rd 2011
Industry veteran joins leading specialist Security firm.
Albourne, West Sussex, May 3rd 2011 / PRNewswire / Preventia, a leading specialist IT Security Company today announced that Stephen O’Donnell has joined their board as Chairman and non-executive Director. As a globally recognised visionary in the IT industry, O’Donnell brings more than three decades of experience to a rapidly growing business which already has some of the world’s largest companies as customers.
O’Donnell is a parallel entrepreneur and IT Industry veteran with over 30 years global experience working in both high growth, early stage businesses and large multinational organizations. He is globally recognized as a specialist in Data Centers and IT Operations and edits a well-respected blog www.thehotaisle.com
He currently hold the positi ons of Chairman at Greenbang.com Ltd, Non Executive Director at Iceotope Ltd and is Executive in Residence at Ariadne Capital. Recently he was CEO at MEEZA a Qatar based Managed Services business and MD EMEA at ESG, a globally recognized Analyst firm. He has held positions as Global Head of Data Centres at BT, SVP Infrastructure and Operations at First Data Corporation as well as senior roles in Wholesale Banking, Insurance and Energy.
“Preventia has always been a thought leader in the IT Security area, demonstrating an uncanny knack for understanding the real and practical IT Security problems that businesses face and finding the absolutely right products and services that solve them. As a real life Preventia customer in the past, I got an understanding of how the firm gets it’s insights and serves it’s customers. Now it is time to move to the next stage of growth, building on a strong product set, deep relationships with Fortune 1000 companies, great customer service and onto delivering Security as a Service.”
“We’re all very excited at having Steve join the business at such a crucial time” said Nick Peaster, founder and Chief Executive of Preventia. “We’re continuing to grow exponentially and having the support and experience Steve brings to the board will be invaluable as we move into new areas of business such as managed security services.”
Preventia announces deployment of Portnox - 16 September 2010
First deployment of Portnox™ in the UK
PortnoxT by Access Layers is a simple clientless, software based NAC solution which covers all IP devices and can be deployed in a matter of days.
Access Layers' Portnox™ is the first NAC product that practically checks for the most important mandatory legitimate access factor: Is the device attempting access from within the network is a known and legitimate company device? is it approved to access the network?
Key Portnox T Benefits:
- Real-time view of all network members, activity and access attempts
- Identification of threats and prevention of violations
- Easy and rapid performance of complex administrative actions
- Efficient control over network performance and resource allocation
- Full support for switches and network components of all major types and vendors
- Independent of software applications, agents or other components on endpoint devices
- Interoperable integration with any existing network security or access control solution
- High reliability through fail open architecture

Quest Software Reveals Innovative Approach To Control Developer
Developer Access to Production
Combination of Total Privilege Access Management Modules Facilitate Solution
London, UK — September 21, 2010 — 360°IT (stand F83) — Quest Software, the market leader in privileged user and privileged access management, today announced it will reveal an innovative approach to control developer access to production along with exhibit partner UK reseller Preventia, during 360°IT .
Click here to download PDF White Paper on this new approach
A typical approach within network infrastructures is to implement a production and non-production (QA/Test) environment. Motivation for this approach is the sensitivity to resource/application problems and/or outages which can impact revenue; invoke regulatory fines as well as create untold impact on corporate image if an issue arises. As a result, enterprises typically create a distinction between their production network/infrastructure and development/QA/test.
There are a number of points raised in granting developer access to production:
- Is the individual authorized to access the production system?
- Is the individual authorized to make changes to the production system?
- Did the individual make only the changes authorized and were the changes made correctly?
Access Control mechanisms are fundamental to managing the first two points while the third point is the one that has the potential to generate headlines but is the most difficult to manage and detect, since despite correct authorization, there is no visibility of the changes made.
Availability, rather than Audit, is often the primary concern of the developer in accessing a production system that has a failed application; and when asked developers are hard pressed to explain exactly what they did to resolve the issue.
Andrew Clarke, VP & Managing Director, EMEA, stated “As an exhibitor at 360°IT, Quest Software will provide visitors from CIO's to IT Managers with a view of our Total Privileged Access Management (TPAM) suite, how it can address the challenge of developer access control and its wider role within their IT infrastructure.” He added: “Quest Software’s TPAM suite provides a unified solution that is able to address all three issues associated with developer access to production.”
TPAM Privileged Password Management (PPM) provides a definition of the users requiring access to production. On request submission, dual-control request approval by another user can also perform real-time validation against a ticketing system. TPAM can be configured to manage the credential of the account including auto-login on the production system, so that the user cannot bypass TPAM to access the production system directly and the credential is never exposed.
TPAM Privileged Session Management (PSM) provides session monitoring and recording and is able to answer the issue of did the individual make only authorized changes and were they made correctly. Every keystroke, mouse movement and application access can be monitored, recorded and archived for future audit/forensic requirements – without the need for host based agent software. Session recordings are activity driven, compressed and encrypted – assuring both security and disk/storage efficiency. TPAM also supports Privileged Command Management (PCM), where individual users granted access to a production system can have limitations on command/environment they are able to execute.
Overall, TPAM enables ‘on demand’ access for developers to production systems with full individual accountability, audit and control. Organizations gain visibility into who is accessing their production environment; who authorized the access, and what the individual did with that access. Functions to control what the individual can do with access further extends the value that TPAM provides in addressing security and compliance issues.
About Quest Software
Quest Software is an award-winning provider of privileged access control solutions for today’s enterprises looking to control, audit and record privilege sessions such as remote administrators, vendors or privileged internal access. Its Total Privileged Access Management (TPAM) suite is a modular, cost-effective solution for privileged user, privileged identity and privileged access control. Built on the award winning Privileged Password Management™ (PPM) and PSM™ appliances, TPAM delivers security and compliance across all market verticals with over 450 installs in over 17 countries world-wide.

Quest NEWS RELEASE - 27-29 April 2010
Quest Software Introduces Privileged Command Management
PSM extended to include multi-platform privileged command management and delegation
RSA Conference & Expo, San Francisco – 27-29 April 2010. Quest Software, a leading provider of Privileged Access
Control Solutions, today introduced Privileged Command Management (PCM) providing fine grain cross
platform privileged command management and delegation.
With the introduction of PCM, Quest Software further extends its award winning privileged password management
and privileged session management capabilities to include privileged command management and
delegation.
For the first time PSM enables the enterprise to extend privileged user access control
down to the specific command they can execute across both Unix/Linux and Windows environments. PCM
values include:
• Granular command delegation for Unix/Linux and Windows systems
• Configurable control to restrict user account access and command execution
• Connections automatically terminated on command completion
• Fully integrated easy to configure command editor
• Enhanced security and control over Unix/Linux root and Windows administrator accounts
• Full audit, log and recording of session/command execution
• Supports compliance access control requirements
Most enterprises today are forced to do more with less resource. As a result, the need to provide command
restricted and delegated privileged access to key resources is growing rapidly. The unique configurable privileged
command capabilities found in PCM supports privileged access controls down to the command level.
Not only are you able to control and record sessions – you can limit connections to a specific command for
both Unix/Linux and Windows systems.
“We are very proud of our market leadership position and continue to raise the bar in meeting our customers’
privileged access management needs,” stated Martin Ryan, Vice President Sales and Marketing. “With
over 350 customers world-wide, the market continues to embrace and deploy both PSM and PPM
(Privileged Password Management). Many had requested we extend our fine grain privileged session access controls
down to the command level – with Privileged Command Management we deliver on this need.”
More information can be found here
Quest Software formerly (eDMZ) will offer a first look at InfoSecurity Europe in London from April 27 - 29 (Booth #H82).
Industry’s First Fully Supported ‘Always On’ 802.11n WIPS Solution Now Available from AirTight
Unique “Live Event” Architecture Reduces Repetitive and Superfluous Events
Mountain View, Calif. - September 23, 2008
AirTight® Networks, the leading provider of wireless intrusion prevention systems (WIPS) and wireless vulnerability management, today announced the general availability of its SpectraGuard® 802.11n Solution that consists of:
- 802.11n MIMO Sensor platform
- SpectraGuard Planner 5.0 release that includes support for 802.11n infrastructure & WIPS deployment planning
- 802.11n WLAN Coverage Estimator (free utility) provided on AirTight's website
See 802.11n press release July 22, 2008.
SpectraGuard 5.7 is now the industry's first and only proactive ('always on') wireless intrusion prevention system to provide comprehensive security from all 802.11n threats with backward compatibility with existing a/b/g wireless networks. The new sensors are available for both AirTight's onsite product, SpectraGuard Enterprise and its recently introduced SaaS offering, SpectraGuard Online.
Significant enhancements to AirTight's SpectraGuard platform include:
- "Live event" Architecture to prioritize threat response and provide comprehensive forensic data for incident analysis
- Stand alone sensor operation to enforce policy even if connectivity to the SpectraGuard Enterprise appliance is interrupted
- Executive style compliance and vulnerability assessment reports, available on a scheduled and on-demand basis
A recent study by BT North America and reported on in Network World found that "nearly one-third of enterprises are migrating to the high-throughput draft 802.11n WLAN standard within the next 12 months. The study's authors say that rate of adoption for a not-yet-ratified standard is unprecedented, indicating that 11n benefits are urgently needed by a significant number of enterprise sites."
"The John C. Lincoln Health Center has always been committed to providing the best health care for our patients and utilizing the best technology to enhance the efficiency of our staff and to benefit our patients," said Troy Wood, senior network administrator, John C. Lincoln Health Center. "The emergence of 802.11n introduces new challenges for both wireless security and network performance and we know AirTight will help us meet them with this fully supported 802.11n WIPS sensor platform."
"Currently we have a no WiFi policy and, as such, have no plans to deploy any access points. We have been using AirTight to detect, report and remove rogue wireless access points running in 802.11a/b/g on our wired network," said John Kemon, program manager for information systems security at the U.S. Agency for International Development (USAID). "The new 802.11n sensor platform is an important enhancement for the detection and prevention of 802.11n threats as 802.11n access points become more prevalent."
Using AirTight's SpectraGuard 802.11n solution, organizations can:
- achieve comprehensive security through accurate classification, robust prevention, and accurate location tracking of 802.11n threats
- reduce total cost of ownership for WIPS deployment through reduced sensor density
- simplify deployment and maximize ROI with planning and design tools
"AirTight is the only WIPS vendor to receive a second consecutive "Positive" rating by Gartner in its recent MarketScope and as this major technology transition is introduced to the enterprise, AirTight continues to be ahead of its customers' needs to secure their networks," said Sri Sundaralingam, VP of product management for AirTight. "The benefits of 802.11n - faster data rates, improved throughput and coverage range - amplify existing wireless security threats ranging from rogue access points to denial of service (DOS) attacks. Accurate threat detection and classification becomes more critical than ever before to avoid chasing false positives given more devices will be visible in the air because of increased RF range of 802.11n technology."
About AirTight Networks
AirTight Networks, the industry standard for wireless vulnerability management, is the only company that offers customers a flexible, end-to-end solution that gives them visibility into their wireless security posture and a choice in how to manage it. AirTight provides full wireless intrusion prevention systems (WIPS) and the world’s first on demand wireless vulnerability management service. AirTight’s patented technology delivers the key elements of an effective WIPS to eliminate false alarms, block wireless threats immediately and automatically and locate wireless devices and events with pinpoint precision. AirTight’s customers include global retail, financial services, corporate, education and government organizations. AirTight Networks is a privately held company based in Mountain View, CA. More information can be found here
Lumension Security Delivers SCAP Validated Vulnerability Management Solution
Comprehensive Security Management Platform Helps Organizations Strengthen IT Security Posture, Achieve Compliance Goals, and Reduce Overall Costs
Scottsdale, AZ, Sep 22, 2008
According to the National Institute of Standards and Technology (NIST), most organizations have difficulty measuring the security of their IT systems. This difficulty arises from multiple causes, such as different ways companies interpret policy, the complexity of systems, and human error. To help organizations improve their security posture and simplify compliance, Lumension Security™ Inc., a global leader in security management, today announced the availability of an SCAP validated network scanner. This, combined with Lumension Security’s SCAP-ready agent-based scanning and remediation solution, enables government and other IT security organizations to automate compliance, vulnerability management and security measurement.
The additional SCAP validation adds to Lumension Security’s powerful Security Configuration Management platform that now combines an agent-based and network vulnerability scanner for complete visibility and control to support IT regulatory compliance initiatives such as FDCC, FISMA, HIPAA, SOX, and security configuration standards.
Security Content Automation Protocol (SCAP) is part of a U.S. government multi-agency initiative to specify an open set of standards for automated vulnerability management, measurement, and policy compliance evaluation. Lumension Security achieved this validation as a result of a formal testing process that ensures proper implementation of the standards and stringent assurance of assessment accuracy within the solution.
“The biggest obstacle companies face today when it comes to demonstrating compliance is visibility,” said Paul Zimski, vice president of solution marketing, Lumension Security. “Without accurate, real time visibility of your network, assessing security software vulnerabilities and mis-configurations, managing the configuration state of endpoints, and proving compliance can be complex and often times costly. Our SCAP validated Vulnerability Management Solution is designed to help organizations gain complete visibility and control through automated security configuration change detection, assessment, and compliance reporting.”
“We are committed to working with industry leaders such as NIST to develop solutions that help strengthen the security of IT systems and provide the most accurate, automated approach to achieving compliance to meet some of industry’s toughest legislations in a cost effective manner,” said Zimski.
The Vulnerability Management Solution enables enterprises to effectively manage the vulnerability management lifecycle, including the discovery of all IT assets, vulnerability assessment of configuration policies according to industry best practices, and proactive identification of system drift for rapid remediation. In addition to utilizing the extensive configuration policies provided by the NIST National Vulnerability Database, one of the de facto industry repositories of third party validated vulnerability content, organizations are free to customize policies according to their own internal policies.
In addition, these solutions combined with Federal Desktop Core Configuration (FDCC) Scanner SCAP validation for its agent-based and network scanners, provide out-of-the box support for FDCC which is now mandated as part of the FISMA reporting requirements. The easy to use templates allow Federal agencies to automate configuration and security assessment to meet stringent regulatory standards and reduce the cost of compliance. This is achieved by thoroughly and accurately detecting software flaws and mis-configurations as well as reporting on the state of system configurations and security posture as mandated by the Office of Management and Budget.
For a free 30 day trial of the industry leading Lumension Security Solutions, please visit http://www.lumension.com/eval_request.jsp
About Lumension Security™, Inc.
Lumension Security™, formed by the combination of PatchLink® Corporation and SecureWave® S.A., is a recognized, global security management company, providing unified protection and control of enterprise endpoints for more than 5,100 customers and 14 million nodes worldwide. Leveraging its proven Positive Security Model, Lumension Security enables organizations to effectively manage risk at the endpoint by delivering best-of-breed, policy-based solutions that simplify the entire security management lifecycle. This includes automated asset discovery, vulnerability assessment, remediation and validation; security configuration management; application control and device control; extensive policy compliance reporting; and integration with leading network access control solutions. Headquartered in Scottsdale, Arizona, Lumension has offices worldwide. PatchLink, now Lumension, was founded in 1991 by Sean Moshir. More information can be found here
Lumension Security Receives Frost & Sullivan 2008 Global Market Penetration Leadership Award
Lumension Security™ has been Awarded the Prestigious Award for Strong Market Share Growth, Product Innovation, and Continued Leadership in Vulnerability Management
Scottsdale, AZ, Sep 16, 2008
Lumension Security™, Inc., a leading global security management company, today announced that global growth consulting company Frost & Sullivan has awarded Lumension Security the esteemed 2008 Global Market Penetration Leadership Award.
The Frost & Sullivan award for Global Market Penetration Leadership is presented every year to the company that has demonstrated excellence in capturing and growing market share within the industry through a combination of key acquisitions and organic growth. The recipient has demonstrated strategic excellence in product innovation in marketing, development, and sales strategies that have resulted in the largest gain in market share for the past two to three years.
According to Frost & Sullivan, Lumension Security has strengthened its position within the Vulnerability Assessment market with the acquisition of Harris Corporation’s STAT Guardian Vulnerability Management Suite in 2007. With the combination of Lumension Security’s industry leading patch and remediation capabilities and the STAT agentless scanning technology, Lumension Security is the first in the industry to deliver a fully integrated Vulnerability Management Solution. Lumension Security Vulnerability Management Solution is one of the most powerful tools in the market, a truly integrated solution that combines agentless and agent-based vulnerability assessment, remediation with security configuration, and compliance reporting.
“Through the convergence of patch management, whitelisting application control, and vulnerability assessment technologies, and patch management, Lumension Security now boasts one of the most complete vulnerability management products and has earned a significant increase in market share,” said Frost & Sullivan analyst Chris Rodriguez.
“Industry recognition by firms such as Frost & Sullivan validates our strategy behind our vision and execution,” said Pat Clawson, Chairman and CEO of Lumension Security. “With the change in the market, more customers are looking for security solutions that can provide a multi-layered approach to security and protection of their business critical systems and data. To that end, Lumension Security made a strategic decision to bring these three synergistic technologies to the market to deliver the industry’s first integrated Vulnerability Management Solution and Endpoint and Data Protection Solution. Our unique combination of Vulnerability Management, Operational Whitelisting and Endpoint Protection, all within a single implementation and platform, delivers total protection against data leakage, malware threats, and software vulnerabilities while simplifying and lowering TCO.”
Lumension Security’s Vulnerability Management Solution delivers complete vulnerability management through a market-validated process that includes comprehensive asset discovery and inventory, thorough vulnerability assessments based upon network-based and agent-based scans, intelligent, automated remediation, and ongoing policy compliance audits - all from a single integrated solution. Combining market-leading products such as PatchLink Scan, PatchLink Update and PatchLink Security Management Console, Lumension’s Vulnerability Management Solution enables customers to effectively manage the entire vulnerability lifecycle, by consolidating vulnerability data and providing centralized policy enforcement and compliance reporting.
Lumension Security’s Endpoint Protection Suite is comprised of Application Whitelisting and Device Control, which protect against targeted threats and enable only authorized applications and devices to execute or connect to a network server, terminal services server, thin client, laptop or desktop. Lumension simplifies the discovery phase so that administrators can uncover all of the applications that are executing on the endpoints. Once known what applications are on the network, a policy can be established and enforced. For a free 30 day trial of the industry leading Lumension Security Solutions, please visit our Lumension section
About Lumension Security™, Inc.
Lumension Security, formed by the combination of PatchLink® Corporation and SecureWave® S.A., is a recognized, global security management company, providing unified protection and control of enterprise endpoints for more than 5,100 customers and 14 million nodes worldwide. Leveraging its proven Positive Security Model, Lumension enables organizations to effectively manage risk at the endpoint by delivering best-of-breed, policy-based solutions that simplify the entire security management lifecycle. This includes automated asset discovery, vulnerability assessment, remediation and validation; application and device control; extensive policy compliance reporting; and integration with leading network access control solutions. Headquartered in Scottsdale, Ariz., Lumension has offices worldwide, including Virginia, Florida, Luxembourg, the United Kingdom, Spain, Australia, Hong Kong and Singapore. PatchLink, now Lumension, was founded in 1991 by Sean Moshir. More information can be found here
Lumension Security Sets Criteria for Next Generation Whitelisting
Lumension SVP of Americas Matt Mosher Explains How to Integrate Whitelisting and Vulnerability Management for Operational Efficiency
Scottsdale, AZ, Sep 5, 2008
Traditional approaches to whitelisting can secure the network only at a single point in time, and as a result, require constant updates. In a video available now from Lumension Security, Senior Vice President of Americas Matt Mosher describes the evolution of whitelisting and details how to efficiently maintain a “known good” state within a dynamic threat environment.
“It is easier to contain a known universe than an unknown one,” says Brent Rickels, senior vice president at First National Bank of Bosque County. “Lumension, by design, allows users to run administratively approved programs only and restricts any unknown and unauthorized executables from springing to life. It addresses all of our concerns when it comes to malware prevention and blocking unauthorized applications.” In the video, Mosher reveals the opportunities that exist for the whitelist to provide intelligence on decisions beyond simply identifying bad or unknown applications.
“To make application control operationally manageable, Lumension Security’s approach extends beyond the executable level to enable whitelisting to add value at the application level to the IT decision making and network management process,” says Mosher. “Operational whitelisting describes the emerging security model for identifying not only what executables are running within the network environment, but also providing a reference library that determines what applications those executables are associated with, the latest versions of the executables, and any vulnerabilities connected to the executables.”
“The evolution of threats is requiring organizations to look at their current security strategy beyond only protecting against unknown applications and malware, to also address insider threats and targeted external threats. While a number of niche companies, such as Bit9, offer features that provide application level protection, we are seeing enterprises demand integrated endpoint security solution suites for simplified management and the highest level of protection that can grow with their organization,” said C. Edward Brice, SVP of Worldwide Marketing for Lumension Security. “Our customers are choosing Lumension Security over niche vendors that only provide one level of protection because we provide a multi-faceted approach to security that can protect against unknown applications, malware, application mis-configurations, data leakage, and security vulnerabilities. In total, our solutions are designed to mitigate risks and provide operational efficiency with lower TCO and tangible ROI.”
Lumension Security’s Endpoint Protection Suite is comprised of Application Whitelisting and Device Control, which protect against targeted threats and enable only authorized applications and devices to execute or connect to a network server, terminal services server, thin client, laptop or desktop. Lumension simplifies the discovery phase so that administrators can uncover all of the applications that are executing on the endpoints. Once known what applications are on the network, a policy can be established and enforced.
For a free 30 day trial of the industry leading Lumension Security Endpoint Protection Solution, please visit http://www.lumension.com.
About Lumension Security™, Inc.
Lumension Security™, formed by the combination of PatchLink® Corporation and SecureWave® S.A., is a recognized, global security management company, providing unified protection and control of enterprise endpoints for more than 5,100 customers and 14 million nodes worldwide. Leveraging its proven Positive Security Model, Lumension Security enables organizations to effectively manage risk at the endpoint by delivering best-of-breed, policy-based solutions that simplify the entire security management lifecycle. This includes automated asset discovery, vulnerability assessment, remediation and validation; security configuration management; application control and device control; extensive policy compliance reporting; and integration with leading network access control solutions. Headquartered in Scottsdale, Arizona, Lumension has offices worldwide, including Virginia, Florida, Luxembourg, the United Kingdom, Spain, Australia, Hong Kong and Singapore. PatchLink, now Lumension, was founded in 1991 by Sean Moshir. More information can be found at www.lumension.com.
Lumension Security, the Lumension logo, PatchLink® and Sanctuary® are trademarks or registered trademarks of Lumension Security. All other trademarks are the property of their respective owners.
Lumension Security Launches eBook, ''Seven Things Every CEO Should Know about Information Security''
Interactive eBook Provides Executive-level Insight into Effective, Cost-Conscious Corporate Security
Scottsdale, Ariz, Aug 27, 2008
While the world of trouble caused by security breaches is obvious every time an executive picks up the newspaper, many CEOs aren’t sure if their company could be in the headlines next. The difficulty lies in understanding what comprises a defensible security posture without the usual information security jargon or sales pitch. In an effort to remove the disconnect between the information security personnel and top decision makers, security management vendor Lumension Security™, Inc. today released a complementary eBook titled “Seven Things Every CEO Should Know about Information Security.”
In the eBook, Lumension Security CEO Patrick Clawson speaks directly to CEOs about today’s pressing information security challenges and outlines best practice recommendations for making leadership decisions that will protect their organizations. The eBook devotes 16 interactive pages - complete with anecdotes and analysis from leading CISOs, CEOs and industry analysts - to covering the following seven mission-critical information security issues:
- Security is a Boardroom Issue
- Cost of Ignoring Security
- Well-Organized and Focused Cybercriminals
- Increasing Insider Threats
- Borderless Enterprise
- Emergence of the Borderless Enterprise
- Traditional Security No Longer Works
- Policy and Process Reign Supreme
- The Security Role of the CEO
“Seeing as security can have such a dramatic effect on an organization’s bottom line, CEOs know that they need to provide strong leadership on the matter of Information Security,” said Patrick Clawson, Chairman and CEO, Lumension Security. “As a CEO, I understand the complexities and nuances of leading an organization to profitability and success, and as an expert in the security industry, I also have a clear picture on how the very best businesses protect themselves. I wrote this book so that every executive decision maker who reads it will come away with actionable advice on how to set a culture of security that permeates into every silo and department and remote office that they maintain.”
About Lumension Security, Inc.
Lumension Security™, formed by the combination of PatchLink® Corporation and SecureWave® S.A., is a recognized, global security management company, providing unified protection and control of enterprise endpoints for more than 5,100 customers and 14 million nodes worldwide. Leveraging its proven Positive Security Model, Lumension Security enables organizations to effectively manage risk at the endpoint by delivering best-of-breed, policy-based solutions that simplify the entire security management lifecycle. This includes automated asset discovery, vulnerability assessment, remediation and validation; security configuration management; application control and device control; extensive policy compliance reporting; and integration with leading network access control solutions. Headquartered in Scottsdale, Arizona, Lumension has offices worldwide. PatchLink, now Lumension, was founded in 1991 by Sean Moshir.
Lumension Security Debuts New Customer Testimonial Video
Healthcare Industry CIO Explains How Lumension Technology Protects Against Endpoint Threats and Data Leakage
Scottsdale, AZ, Aug 20, 2008
John C. Lincoln Health Network faced a dilemma. How could it provide its 3500 employees and 1400 affiliated physicians with access to the latest mobile, wireless and other technologies while also securing its protected health information? In a video available now from Lumension Security, John C. Lincoln Health Network CIO Rob Israel describes how Lumension Security’s all-in-one security solution suite ensures the health network meets these goals.
In the video, Israel says, “Since deploying Lumension Security’s all-in-one solution suite we’ve seen a 365 percent reduction in cost. That number is based on a drastic reduction in help desk calls, longer uptime and stability of our network, greater bandwidth and dramatically less computer downtime.
”Lumension Security’s all-in-one solution suite provides John C. Lincoln with an unparalleled level of protection from data threats- including data leakage, malware and spyware - and policy enforcement for approved applications and devices. Lumension Security also assists with Health Insurance Portability and Accountability Act (HIPAA) compliance. To protect from data threats, Lumension Security offers unified policy enforcement for centrally managing and monitoring application and device control proactively from a single console.
About Lumension Security™, Inc.
Lumension Security™, formed by the combination of PatchLink® Corporation and SecureWave® S.A., is a recognized, global security management company, providing unified protection and control of enterprise endpoints for more than 5,100 customers and 14 million nodes worldwide. Leveraging its proven Positive Security Model, Lumension Security enables organizations to effectively manage risk at the endpoint by delivering best-of-breed, policy-based solutions that simplify the entire security management lifecycle. This includes automated asset discovery, vulnerability assessment, remediation and validation; security configuration management; application control and device control; extensive policy compliance reporting; and integration with leading network access control solutions. Headquartered in Scottsdale, Arizona, Lumension has offices worldwide. PatchLink, now Lumension, was founded in 1991 by Sean Moshir. More information can be found at www.lumension.com.
Lumension Security Launches Interactive Office Game To Educate IT Professionals On 10 Most Common Security Risks Within The Workplace
Educational Campaign Offers Tips and Top Technologies to Help Cure Office Headaches
Scottsdale, AZ, Aug 13, 2008
According to a survey conducted by Ponemon Institute, 49 percent of data breaches occur due to lost or stolen laptops or other devices such as USB flash drives. Furthermore, 53 percent of organizations would never know what data was stored on a lost USB device. While mobile devices, storage media and other office technologies are designed to enhance productivity, they are creating huge security gaps for enterprises today. To help bring awareness to 10 most common security risks within the workplace, Lumension Security™, Inc., a global leader in security management, has launched an interactive “The Office at Risk.”
“The Office at Risk” is designed to educate the IT audience about the 10 security risks that may not be top of mind for IT professionals. In addition, IT professionals will learn what they can do to address these security shortcomings, key technologies such as Vulnerability Management, Data Protection, and Endpoint Protection to cure office headaches.
The interactive online game allows visitors to click on IT scenarios that may or may not be a threat to the office environment such as employees downloading MP3s, visiting malicious websites, etc. Visitors will have a checklist of 10 security risks to identify throughout the game while also learning more about the security threats, statistics, and more importantly, what technologies are available to help combat those threats. Once the visitor identifies all 10 risks, they will automatically win a 1GB Lumension Security encrypted USB stick loaded with an IT Security Survival Kit. They will also be entered to win 1 of 3, 1-year-500 node Lumension Security Software suite subscriptions, with a free HP server included.
Lumension Security’s Senior Vice President of Worldwide Marketing C. Edward Brice stated: “Today’s technology and business environment is highly dynamic. With the evolution of new, sophisticated attacks that use multiple vectors to penetrate the security infrastructure combined with increasing insider risks, enterprises are challenged with constantly evolving their security strategy to stay ahead of the shifting threat. However, while there are many security risks that can be addressed with technology, we believe the human factor remains the biggest risk, whether it’s unintentional or malicious. The goal behind "The Office at Risk" is to not only educate the IT professionals on the security risks technology introduces to the workplace, but also common human errors that can have a major impact on the organization’s brand, business, and customer loyalty.
About Lumension Security™, Inc.
Lumension Security™, formed by the combination of PatchLink® Corporation and SecureWave® S.A., is a recognized, global security management company, providing unified protection and control of enterprise endpoints for more than 5,100 customers and 14 million nodes worldwide. Leveraging its proven Positive Security Model, Lumension Security enables organizations to effectively manage risk at the endpoint by delivering best-of-breed, policy-based solutions that simplify the entire security management lifecycle. This includes automated asset discovery, vulnerability assessment, remediation and validation; security configuration management; application control and device control; extensive policy compliance reporting; and integration with leading network access control solutions. Headquartered in Scottsdale, Arizona, Lumension has offices worldwide. PatchLink, now Lumension, was founded in 1991 by Sean Moshir.
Global Cosmetics Company Shiseido Ensures Highest Level of Business Security and Continuity With Lumension Security
Shiseido protects its network from threats and facilitates compliance with multiple international regulations using Lumension's industry-leading Vulnerability Management Solution
Scottsdale, AZ, Aug 12, 2008
Lumension Security™, Inc., a global leader in security management, today announced the availability of a podcast titled, “Shiseido Ensures Highest level of Business Security and Continuity with Lumension Security.” The podcast features an in-depth conversation with Anthony Sica, executive director of IT at Shiseido, one of the largest cosmetics companies in the world, about how Lumension’s Vulnerability Management Suite helps Shiseido protect its network from malware while freeing up IT staff resources, decreasing network down time and facilitating compliance with a variety of international regulations.
“Before establishing polices and implementing Lumension’s solution to enforce them, we were constantly chasing fires that were spreading across all four of our U.S. sites. Nearly every day we were dealing with a different worm or virus that made its way onto our network, most of which were the result of un-patched vulnerabilities in our operating systems,” said Sica. “With Lumension’s solutions, we’re able to quickly proactively assess and eliminate all known vulnerabilities and contain any malware. Through the cost savings on IT staff resources alone, we were able to achieve ROI in just three months.”
Lumension’s Vulnerability Management Suite, consisting of PatchLink Update, PatchLink Scan and PatchLink Enterprise Reporting, allows organizations to:
- Gain a unified view of an organization’s security posture
- Discover and inventory all network IT assets
- Automatically propagate agents to PCs and laptops in a highly distributed environment
- Assess all threats within the networks using agent based and agentless scanning technology
- Remediate all known vulnerabilities in real time
- Cost effectively and easily produce comprehensive reports to prove specific compliance requirements.
Lumension’s Vulnerability Management Suite enables Shiseido to eliminate the time spent by its IT staff manually assessing vulnerabilities and rolling out patches. The solution also helps Shiseido comply with a variety of international regulations.
“Because we are a Japanese company with a global presence, compliance is a major issue. Lumension’s Vulnerability Management Suite helps us meet the Japanese version of Sarbanes Oxley as well as various other requirements by developing clear policies and procedures for our patch and vulnerability management processes. We are also able to track software licenses dynamically, something that is very important when signing contracts with Microsoft and IBM,” said Sica. “Additionally, we are able to react to issues more quickly, which is as important as any quantifiable ROI figures. Lumension’s Vulnerability Management Suite gives us a more security-centric view of the network, allowing us to gain greater insight into the network and a better overall view into the system. We are able to more rapidly adjust to changes in the business, making our IT operation much more proactive and flexible, and therefore more productive.”
About Lumension Security™, Inc.
Lumension Security™, formed by the combination of PatchLink® Corporation and SecureWave® S.A., is a recognized, global security management company, providing unified protection and control of enterprise endpoints for more than 5,100 customers and 14 million nodes worldwide. Leveraging its proven Positive Security Model, Lumension Security enables organizations to effectively manage risk at the endpoint by delivering best-of-breed, policy-based solutions that simplify the entire security management lifecycle. This includes automated asset discovery, vulnerability assessment, remediation and validation; security configuration management; application control and device control; extensive policy compliance reporting; and integration with leading network access control solutions. Headquartered in Scottsdale, Arizona, Lumension has offices worldwide. PatchLink, now Lumension, was founded in 1991 by Sean Moshir.
Lumension Security, the Lumension logo, PatchLink® and Sanctuary® are trademarks or registered trademarks of Lumension Security. All other trademarks are the property of their respective owners.
Lumension Security Annouces General Availability of Sanctuary Endpoint Protection and Data Protection Suite to Safegaurd Data and Privacy
Powerful Solution Enables Business Productivity and Ensures High Level of Security by Encrypting and Protecting Removal Media, Storage Devices, and CD/DVD
Scottsdale, AZ, Aug 5, 2008
Lumension Security™ Inc., a recognized global leader in security management, today announced the general availability of its Sanctuary Endpoint Protection and Data Protection suite. The new release helps prevent data loss and theft by extending its powerful encrypting capabilities beyond storage devices and removable media to now include CD/DVD media to protect easily accessible endpoints.
Data breach remains the leading cause of financial loss for organizations, costing an average of $197 per record, according to a 2007 study by the Ponemon Institute. The average data breach could cost upwards of $6.3 million per incident with potential for lost business opportunity to the tune of $128 per leaked customer record. In order to prevent accidental and malicious loss of confidential data, Sanctuary provides complete control over endpoints and clear visibility into where data is stored and where it is going.
To enforce portable media usage policies, the Sanctuary suite allows administrators to require storage device encryption using built-in Sanctuary technology or PGP Corporation encryption solutions. PGP® enterprise data protection solutions help organizations comply with FIPS-140-2 standards and provide centralized encryption key management and support for large secondary hard drives. Using PGP® encryption with the Sanctuary technology, administrators can easily establish and enforce granular encryption policies for removable storage devices, review device usage logs, and monitor the content of data transferred to and from devices.
“Protecting data is more important than ever given the mounting security risks associated with today's mobile workforce and compliance mandates. At all times, we need to know that no confidential data leaves the premises that should not and no malware infects our network via virus-laden device or rogue application,” said Rob Israel, CIO, John C. Lincoln Health Network. “Lumension Security’s Endpoint Protection and Data Protection Suite allows us to be proactive, yet flexible with the data encryption and enforcement of policies around employee device and application use. What’s more, this powerful solution extends our control over CD and DVD data by allowing us to reduce risk of data loss and theft by encrypting and protecting easily accessible information while enabling end user productivity.”
Sanctuary Delivers Key Benefits:
- Prevents Data Loss on CD/DVD
- Extends data security beyond USB and other portable devices to include CD/DVD media. Enforces encryption for data written to CD/DVD based on user or user group, with portability to non-Sanctuary machines for secure information sharing outside of the organization.
- Enforces CD/DVD Encryption for Removable Storage Devices
- Users can simply use Secure Volume Browser to define the data they wish to encrypt and burn to the media, and then burn the encrypted data onto the media. Sanctuary Secure Volume Browser uses built-in CD/DVD burning technology, rather than third party commercial burning software.
- Recognizes PGP® Whole Disk Encryption (WDE) on USB Storage
- Recognizes PGP WDE on USB storage devices and applies policy and logging appropriately, including patented Shadowing to audit data transferred to/from removable storage devices.
“The growing proliferation of inexpensive, portable media and storage devices are leaving organizations more exposed to data loss and theft,” said Mike Wittig, president and chief technology officer, Lumension Security. “This type of loss can cost businesses millions of dollars in lost business and customer loyalty, not to mention legal issues. In order to help enterprises shore up their defenses against data leakage, the Sanctuary suite prevents data loss and leakage through unauthorized removable devices. This new suite is designed to enable business productivity and ensure high levels of security by allowing organizations to establish policies that restrict unauthorized executables and control access and use of USB, CD/DVD, and other storage devices.”
Availability
Lumension Security’s Sanctuary suite is now available worldwide. Try the industry leading solution for free by clicking on Free 30 Day Eval.
About Lumension Security™, Inc.
Lumension Security™, formed by the combination of PatchLink® Corporation and SecureWave® S.A., is a recognized, global security management company, providing unified protection and control of enterprise endpoints for more than 5,100 customers and 14 million nodes worldwide. Leveraging its proven Positive Security Model, Lumension Security enables organizations to effectively manage risk at the endpoint by delivering best-of-breed, policy-based solutions that simplify the entire security management lifecycle. This includes automated asset discovery, vulnerability assessment, remediation and validation; security configuration management; application control and device control; extensive policy compliance reporting; and integration with leading network access control solutions. Headquartered in Scottsdale, Arizona, Lumension has offices worldwide, including Virginia, Florida, Luxembourg, the United Kingdom, Spain, Australia, Hong Kong and Singapore. PatchLink, now Lumension, was founded in 1991 by Sean Moshir.
AirTight Launches 802.11n WLAN Coverage Estimator
Free Tool to Estimate Coverage, Security and Bill-of-Materials
Mountain View, CA — July 30, 2008
AirTight® Networks, the leading provider of wireless intrusion prevention systems (WIPS) and wireless vulnerability management, announced the release of an 802.11n WLAN Coverage Estimator on its Web site. This free interactive utility helps organizations which are trying to get a better understanding of how 802.11n impacts their environment and the cost of 802.11n rollouts. Last week the company announced the industry’s first fully supported 802.11n WIPS solution including the first MIMO security sensor.
Using the Coverage Estimator, organizations can:
- Estimate 802.11n WLAN coverage and security requirements
- Define their environment including floor plan, power and throughput controls
- Drag and drop AP and sensor placement
- Generate bill-of-materials and projected cost estimates
“The 802.11n WLAN Coverage Estimator is not intended to replace a full-fledged WLAN RF planner such as AirTight’s SpectraGuard® Planner,” said Sri Sundaralingam, vice president of product management at AirTight. “But it does provide a wide array of interactive features which are useful for quick, high-level planning of WLAN infrastructure and security, and for estimating the total cost of your Wi-Fi rollout.”
While 802.11n offers many benefits to the enterprise with faster data rates, improved throughput and improved coverage range, wide adoption of 802.11n technology amplifies existing wireless security threats ranging from rogue access points to denial of service (DOS) attacks. Careful planning and implementation, therefore, becomes more critical.
The Coverage Estimator allows users to:
- Define the dimensions of the grid area in meters or feet.
- Drag and drop legacy (a, bg, abg) and 802.11n (an, bgn, abgn) access points onto the layout.
- Estimate the radio coverage of access points and sensors in their premises by choosing one of the pre-defined RF environments.
- Choose the appropriate transmit power for their access points.
- Drag and drop WIPS sensors on the layout and plan their wireless intrusion detection and prevention coverage.
- Estimate the total cost for their Wi-Fi rollout project including WLAN infrastructure and WIPS planning.
About AirTight Networks
AirTight Networks, the industry standard for wireless vulnerability management, is the only company that offers customers a flexible, end-to-end solution that gives them visibility into their wireless security posture and a choice in how to manage it. AirTight provides full wireless intrusion prevention systems (WIPS) and the world’s first on demand wireless vulnerability management service. AirTight’s patented technology delivers the key elements of an effective WIPS to eliminate false alarms, block wireless threats immediately and automatically and locate wireless devices and events with pinpoint precision. AirTight’s customers include global retail, financial services, corporate, education and government organizations. AirTight Networks is a privately held company based in Mountain View, CA.




