Security audit, compliance and standards
Get tips from the experts on security audits, compliance and standards. Advice is offered on data privacy and theft, audit planning and management, how to work with auditors, and compliance with standards, regulations and guidelines such as PCI DSS, GLBA, HIPPA, SOX, FISMA, ISO 17799 and COBIT.
Top Stories
-
Tip
20 Sep 2022
How to develop a cybersecurity strategy: Step-by-step guide
A cybersecurity strategy isn't meant to be perfect, but it must be proactive, effective, actively supported and evolving. Here are the four steps required to get there. Continue Reading
-
Tip
14 Jun 2022
3 steps for CDOs to ensure data sovereignty in the cloud
Data sovereignty regulations, combined with a tsunami of data growth and increased cloud usage, have created a perfect storm that chief data officers must manage. Continue Reading
-
News
12 Oct 2022
Microsoft adds conversational AI to Dynamics 365
At Ignite, Microsoft Dynamics 365 users get AI-based automation capabilities with emphasis on conversational intelligence for sales and customer service. Continue Reading
-
News
12 Oct 2022
Microsoft releases SharePoint Syntex content AI services
Microsoft Syntex is a bundle of AI services for enterprise content repositories. It signals new attention devoted to SharePoint, which still has hundreds of millions of users. Continue Reading
-
News
12 Oct 2022
New Google service aims to move mainframe workloads to cloud
Google Cloud wants to shift workloads and applications from banks, healthcare and other industries into the cloud with a new mainframe migration service and performance tier. Continue Reading
-
Feature
12 Oct 2022
Cloud bursting: What is it, what workloads, what technologies?
We look at cloud bursting, its benefits and how to deploy it, as well as the limitations in terms of suitable workloads, the technologies needed and the skills to make it happen Continue Reading
-
Blog Post
12 Oct 2022
My five-point ranking system to evaluate tech candidates
Worried about hiring the wrong tech candidate? Here's a tried and true, five point evaluation system that has regularly proven itself in the field. Continue Reading
-
Answer
12 Oct 2022
Are Microsoft Teams calls encrypted?
Microsoft Teams calls are encrypted at rest and in transit. But organizations that want an additional layer of security can enable end-to-end encryption for one-on-one calls. Continue Reading
- 12 Oct 2022
- 12 Oct 2022
- 12 Oct 2022
-
News
12 Oct 2022
Finance regulator cracks down on use of messaging apps
The Financial Conduct Authority is taking a closer look at how staff at banks are using WhatsApp in work Continue Reading
-
News
12 Oct 2022
NCSC urges organisations to secure supply chains
NCSC’s latest guidance package centres supply chain security, helping medium to large organisations assess and mitigate cyber risks from suppliers Continue Reading
-
Tip
12 Oct 2022
Explore the benefits of Docker for testers, QA teams
From simplified test setup to enhanced isolation, Docker containers offer a range of advantages to QA engineers. Containers also encourage earlier, and more frequent, testing. Continue Reading
-
News
12 Oct 2022
Qualcomm unveils next-gen MR, VR devices based on Snapdragon platform
New premium-tier extended reality platform is said to deliver 50% higher sustained power and 30% improved thermal performance to enable more immersive metaverse experiences in smaller, lighter form factors Continue Reading
-
News
12 Oct 2022
UK Atomic Energy Authority makes call on new UC telephony
National nuclear-based research facility replaces inflexible cloud-based system to add agility to enable staff to collaborate more effectively in a hybrid working approach Continue Reading
-
News
12 Oct 2022
Major PC providers experience a massive fall in PC shipments
Gartner’s preliminary market data for the PC industry show the boom experienced during the pandemic is over Continue Reading
-
News
12 Oct 2022
Santander and Google offer tech to help businesses smooth move to cloud
Dual Run service from Google will be built on top of Santander technology known as Gravity Continue Reading
-
Feature
12 Oct 2022
IT sustainability strategies: Why enterprises need to start with the datacentre when going green
Enterprises are under pressure to curb their carbon emissions and become more environmentally friendly entities on multiple fronts, including in the datacentre Continue Reading
-
News
12 Oct 2022
MicroScope at 40: David Watts, TD SYNNEX
As MicroScope celebrates its 40th anniversary, we look back and wonder about what will happen next. The key theme that links all four decades is change – and that has been seen across all parts of the channel Continue Reading
-
News
12 Oct 2022
French Supreme Court rejects EncroChat verdict after lawyers question secrecy over hacking operation
France’s Supreme Court has sent a case back to the court of appeal after police failed to disclose technical details of EncroChat hacking operation Continue Reading
-
News
12 Oct 2022
Microsoft fixes lone zero-day on October Patch Tuesday
Microsoft patched a solitary zero-day vulnerability in its latest monthly drop, but fixes for two others disclosed in the past few weeks are nowhere to be seen Continue Reading
-
News
12 Oct 2022
Meta presents vision for business metaverse
How can hybrid teams collaborate seamlessly? Meta believes virtual reality tied to business applications is the way forward Continue Reading
-
News
12 Oct 2022
ICO selectively discloses reprimands for data protection breaches
Data protection experts question ICO’s selective approach to publishing formal reprimands for contravening the law, after FoI request reveals the Cabinet Office was among the organisations reprimanded Continue Reading
-
Feature
12 Oct 2022
7 steps for implementing zero trust, with real-life examples
More than a decade since the term's inception, zero-trust security is still much easier said than done. Here's how to get started. Continue Reading
-
Conference Coverage
12 Oct 2022
Microsoft Ignite 2022 conference coverage
News related to the tech company's ever-expanding portfolio of cloud offerings is expected to take center stage at the Seattle-based event happening from Oct. 12 to 14. Continue Reading
-
Tip
12 Oct 2022
An overview of the CISA Zero Trust Maturity Model
A zero-trust framework blocks all attempts to access internal infrastructure without authentication. The CISA Zero Trust Maturity Model is a roadmap to get there. Continue Reading
-
News
11 Oct 2022
Microsoft resolves Windows zero-day on October Patch Tuesday
The company released mitigation instructions for two Exchange Server zero-days discovered late last month but had no security updates to close the flaws on the email platform. Continue Reading
-
News
11 Oct 2022
EEOC employer lawsuits could increase in number, reach
The EEOC is on the verge of gaining a Democratic majority, something that might soon increase the scope of its lawsuits, such as how AI is used in hiring. Continue Reading
-
News
11 Oct 2022
NPM malware attack goes unnoticed for a year
A cybercriminal crew known as "LofyGang" poisoned software supply chains with bad NPM packages for more than a year, according to Checkmarx researchers. Continue Reading
-
News
11 Oct 2022
BlackByte ransomware uses new EDR evasion technique
Attackers deploying the BlackByte ransomware strain are using vulnerable drivers to target a part of the operating system that many security products rely on for protection. Continue Reading
-
Feature
11 Oct 2022
Top 12 best cities for tech jobs in 2022
Silicon Valley isn't the only tech hotspot in the United States. Here are some other cities where professionals are flocking for jobs in the technology sector. Continue Reading
-
News
11 Oct 2022
Google Cloud introduces new AI tools for business users
The tech giant released new a translation hub aimed at business users, a computer vision feature for the Vertex AI platform, and the OpenXLA Project open source initiative. Continue Reading
-
Guest Post
11 Oct 2022
Pliancy shuns MSP label, grows $30M business
The managed services business model may be an investor favorite at the moment, but Marcus Olson has avoided that term, emphasizing a consultative approach instead. Continue Reading
-
Tip
11 Oct 2022
What is zero-trust network access? ZTNA basics explained
Zero-trust network access is touted as the solution to replace the VPN. As the potential future of network security, learn more about ZTNA, including its benefits and challenges. Continue Reading
-
News
11 Oct 2022
Critical Fortinet vulnerability under active exploitation
Fortinet said the critical vulnerability affects three of its services -- FortiOS, FortiProxy and FortiSwitch Manager -- and urged customers to take immediate action. Continue Reading
-
News
11 Oct 2022
Tech for democracy gains traction but may pay lip service
The Copenhagen Pledge on Tech for Democracy highlights how tech can crumble or shore up democracy and human rights. But it lacks action and accountability, industry experts say. Continue Reading
-
Guest Post
11 Oct 2022
How 5G in healthcare can help IoT, wearables adoption
The combination of IoT devices and 5G can expand the use of healthcare devices for more connected, smarter patient care. 5G can also help with security and interoperability concerns. Continue Reading
-
Tip
11 Oct 2022
What IT pros need to know about low-code limitations
Low-code environments promise to simplify and speed up software development, but their limitations can create challenges for enterprise IT. Compare models for low-code adoption. Continue Reading
-
Feature
11 Oct 2022
LinkedIn scams, fake Instagram accounts hit businesses, execs
Even the most secure business and executive social media accounts that have strong passwords and multifactor authentication are vulnerable to cloning schemes. Continue Reading
-
Feature
11 Oct 2022
HubSpot DEI program shores up software engineer shortage
HubSpot has been building its DEI program for years, which includes in its hiring practices. By focusing on a more diverse talent pool, the company has found it can better manage the software engineer shortage. Continue Reading
-
Tip
11 Oct 2022
The role of the T-shaped software tester in modern dev
While a T-shaped tester delivers a powerful and specialized skill set, continuous learning should be an ongoing priority for all software team members. Continue Reading
-
News
11 Oct 2022
Academia Technology Group aims for growth in fiscal 2023
Education player signals it will look beyond its core market for more opportunities in the future Continue Reading
-
Opinion
11 Oct 2022
Reducing the cyber stack with API security
Budgets are tight, making it difficult to secure spend, but is there an argument for jettisoning fragmented approaches to securing APIs in favour of a dedicated end-to-end approach? Doubling down on API security could help businesses not just reduce risk, but also costs Continue Reading
-
News
11 Oct 2022
Community Fibre secures £985m finance facility
London and South East-based gigabit connectivity provider announces massive cash injection Continue Reading
-
News
11 Oct 2022
Boingo Wireless claims commercial use first with open source software for Wi-Fi 6E
Telecom Infra Project hits new milestone as wireless operator expands its converged technology portfolio with new flexible Wi-Fi architecture to streamline network deployments Continue Reading
-
Blog Post
11 Oct 2022
IFS Unleashed 2022: Live keynote show report
Once simply known as IFS World Conference, the last pre-pandemic gathering from the US and European-headquartered cloud enterprise software company was called ‘For The Challengers’ - a nod of sorts ... Continue Reading
-
Tip
11 Oct 2022
Choose the right on-premises-to-cloud migration method
One of the first steps in a cloud migration is to choose a data transfer model. There are two options to consider -- online and offline -- but you need to weigh the pros and cons. Continue Reading
-
News
11 Oct 2022
Google Cloud consolidates analytics tools under Looker name
The tech giant renamed Data Studio, its primary BI platform before its acquisition of Looker, and unveiled a new enterprise version of the rebranded platform. Continue Reading
-
Blog Post
11 Oct 2022
Doubling down on the renewability of data to drive change in society
In this guest post, Ciaran Dynes, chief product officer at data integration platform, Matillion, explores the role of cloud data in informing decisions that reduce global impact As the world turns ... Continue Reading
-
News
11 Oct 2022
Contractor left Toyota source code exposed for five years
Source code related to Toyota’s T-Connect service was left exposed on GitHub for over five years by a contractor Continue Reading
-
News
11 Oct 2022
Google grows data cloud capabilities for data management
The tech giant brings open source Apache Iceberg table format support to its BigLake data lake as it extends BigQuery support for unstructured data and Apache Spark. Continue Reading
-
News
11 Oct 2022
Gitex 2022: Avaya aims for innovation without disruption as it reveals cloud comms partners
Global communications and collaboration firm showcases business outcomes at leading expo and announces new strategic partnership with conversational AI provider and cloud telecoms and technology solutions company Continue Reading
-
Tip
11 Oct 2022
DPUs vs. SmartNICs: What storage admins need to know
To determine whether a SmartNIC or DPU is right for their organization, admins must understand the capabilities of different kinds of NICs and DPUs. Continue Reading
-
Feature
11 Oct 2022
How to choose the best ZTNA vendor for your organization
In a sea of options, finding the best ZTNA vendor for your organization can pose a major challenge. Weed through the marketing hype with advice from the experts. Continue Reading
-
News
11 Oct 2022
Cohesity founder, new CEO discuss data management strategy
The current and former Cohesity CEOs seek to bring the company to 'the next level.' Plans include melding backup and security as well as potentially going public. Continue Reading
-
Tip
11 Oct 2022
Top 6 challenges of a zero-trust security model
Zero trust has a number of challenges, but because the model is highly beneficial, it's important for organizations to learn how to overcome them. Continue Reading
-
News
11 Oct 2022
Post Office scandal inquiry restarts with call for a pause amid disclosure controversy
The statutory public inquiry into the Post Office Horizon scandal has begun phase two with a request for an adjournment amid allegations that the Post Office is failing to meet its obligation to disclose all relevant documents Continue Reading
-
News
11 Oct 2022
Google Cloud fleshes out sovereign cloud capabilities for European enterprises
Google Cloud uses the first day of its user conference to provide an update on how its efforts to meet the data sovereignty needs of European enterprises are progressing Continue Reading
-
News
11 Oct 2022
Google launches new supply chain security offerings
Securing the software supply chain, especially open source libraries, was a major theme behind the new products released at the Google Cloud Next '22 conference. Continue Reading
-
News
11 Oct 2022
Wayfair shutters datacentres and ends hybrid cloud strategy with Google Cloud move
Online home furnishings retailer Wayfair has completed a 16-month datacentre shutdown project that has seen it migrate all its applications and workloads to the Google Cloud Continue Reading
-
News
11 Oct 2022
Public sector spend on IT climbed to £12.6bn in 2021
Public sector bodies IT spend went up 10% last year, but the majority of the money went to large IT suppliers with 89% of the total spend going to so-called ‘tech titans’, according to a report from Tussell Continue Reading
-
Blog Post
11 Oct 2022
Scanning – an enabler for digital transformation
Many organisations are shifting to a ‘less-paper’ environment as they accelerate their digital transformation initiatives. Scanning plays a key role in this transition, enabling companies to ... Continue Reading
-
News
11 Oct 2022
Small businesses bask in broadband benefits as UK full-fibre reaches 11 million homes
As more SMEs shift towards hybrid working, better broadband becomes a priority. Studies from research firm and UK comms regulator show full-fibre availability is on the increase, with almost two in five able to access services Continue Reading
-
Feature
11 Oct 2022
May the fourth be with you as you enter the final quarter with cautious optimism
The last three months of the year represent the busiest time for the channel as targets are aimed for and the year goes down as a success or failure Continue Reading
-
News
11 Oct 2022
Nokia launches SaaS for fixed networks portfolio
Comms tech giant intros software as a service for fixed networks portfolio line-up covering broadband and Wi-Fi controller, as well as operational tools Continue Reading
-
E-Zine
11 Oct 2022
Government bins IR35 reforms – what you need to know
In this week’s Computer Weekly, after the government scrapped its IR35 reforms, we examine what IT contractors need to know. With hybrid working, employee experience is a priority – we look at how it meshes with customer experience initiatives. And we assess the options for unstructured data storage in the cloud and on-premise. Read the issue now. Continue Reading
-
News
11 Oct 2022
With Java 19, Oracle boosts developer productivity with an eye on the future
Major features in Java 19 will make it easier for Java developers to build applications that interface with non-Java code, among other capabilities in the 10th edition of the platform’s six-month release cadence Continue Reading
-
Tip
11 Oct 2022
How to conduct a cybersecurity audit based on zero trust
This checklist offers guidance on how to prepare for a zero-trust cybersecurity audit and helps document how well cybersecurity controls are performing based on CISA's ZTMM. Continue Reading
-
Blog Post
10 Oct 2022
API series - OutSystems: Process purity, how to avoid ‘bad’ automation
As we connect more systems, applications, compute resources and containerised entities to each other through the neural networking connections offered by APIs, there is a clear and present need to ... Continue Reading
-
Opinion
10 Oct 2022
Currency markets causing choppy waters for UK outsourcing
Anthony Drake, director at tech advisory ISG, explains how the UK government’s botched mini-Budget announcement raised the cost of IT outsourcing Continue Reading
-
Feature
10 Oct 2022
Online marketplace momentum ushers in new era for retailers
Superdrug is the latest in a growing list of retailers to launch its own online marketplace, joining B&Q, Boots and others in driving a new era for UK retail Continue Reading
-
News
10 Oct 2022
How Cloudflare is staying ahead of the curve
Cloudflare co-founder and CEO Matthew Prince talks up what has changed since the company’s first business plan was written in 2009 and how it keeps pace with the fast-moving network security landscape Continue Reading
-
News
10 Oct 2022
Dutch infrastructure sector seeks closer collaboration with government
Although the Netherlands government is increasingly realising how vital the country’s digital infrastructure is, it lacks sufficient policy-making and vision, say industry associations Continue Reading
-
News
10 Oct 2022
BHRUT launches digital surgery clinic
Barking, Havering and Redbridge University Hospitals NHS Trust’s digital surgery clinic, thought to be the first in the world, will give 700 patients access to a digital platform to help them prepare for surgery and speed up recovery Continue Reading
-
Feature
10 Oct 2022
Morrisons joins the fast-growing retail media movement
More retailers are becoming publishers as they realise the potential of their online assets, helping to fuel a new fast-growth segment of digital marketing – and Morrisons is no exception Continue Reading
-
Opinion
10 Oct 2022
IT Sustainability Think Tank: What IT leaders need to know about greenwashing
How can IT leaders separate fact from fiction when weighing up a tech supplier’s sustainability claims? And, crucially, what are the dangers or risks that enterprises face if they do not do their due diligence on the green claims of their providers? Continue Reading
-
News
10 Oct 2022
Ukraine and EU explore deeper cyber collaboration
A Ukrainian delegation has met with officials from the EU’s ENISA cyber agency to explore deeper cooperation on cyber security issues Continue Reading
-
Opinion
10 Oct 2022
Security Think Tank: Design security in to reap container benefits
Provided container security basics are built into your development and runtime environment from the start, containerised services and applications can provide rapid – and secure – achievement of business objectives Continue Reading
-
Feature
10 Oct 2022
Forrester: How to expand your API strategy
Digital bonding is a mechanism for bridging enterprise boundaries by using application programming interfaces Continue Reading
-
News
09 Oct 2022
ODI food poverty study shows black families and North East suffering most
A food poverty data report from the Open Data Institute shows black families and the North East of England are suffering the most Continue Reading
-
News
07 Oct 2022
Experts torn on impact of antitrust bills passed by House
The three antitrust bills passed by the U.S. House of Representatives would funnel more money to antitrust law enforcers, as well as add to enforcement processes. Continue Reading
-
Tip
07 Oct 2022
Compare container orchestrators Apache Mesos vs. Kubernetes
Exploring options for container orchestration? Kubernetes' popularity doesn't mean it's always the best choice. Discover the tradeoffs and use cases of Mesos vs. Kubernetes. Continue Reading
-
News
07 Oct 2022
Micron investment to spark chip ecosystem in New York
The $100 billion plan aims to bring businesses and thousands of workers to the Syracuse, N.Y., area -- and boost the chip supply for the IT staples and innovations CIOs pursue. Continue Reading
-
News
07 Oct 2022
CISA lists top vulnerabilities exploited by Chinese hackers
The U.S. government published a list of the most commonly exploited vulnerabilities exploited by Chinese state-sponsored actors, including Log4Shell and the ProxyLogon bugs. Continue Reading
-
Feature
07 Oct 2022
The long-term answer to fixing bias in AI systems
The technology is exploding with new developments daily. However, problems with training data can lead to bias. Fixing it requires retraining the data and educating users. Continue Reading
-
Tip
07 Oct 2022
Perimeter security vs. zero trust: It's time to make the move
Perimeter security requires a border to protect enterprise data. With more and more users working outside that border, zero trust promises a better security option for the future. Continue Reading
-
Blog Post
07 Oct 2022
API series - NetFoundry: The tug of war between API access & security
This is a contributed piece for the Computer Weekly Developer Network’s API series written by Galeal Zino in his capacity as co-founder and CEO of NetFoundry – the company is the originator and ... Continue Reading
-
07 Oct 2022
Unstructured data storage: on-prem vs cloud vs hybrid
We look at storage for unstructured data on-premise, in the cloud and across multiple locations. There are advantages to a hybrid approach, but there can be hidden costs, too. Continue Reading
-
07 Oct 2022
Employee experience joins CX for total enterprise view
Total experience is emerging to join up employee and customer experience for organisations intent on being holistic and progressive. Continue Reading
-
07 Oct 2022
IR35 reforms to be scrapped: What IT contractors need to know
News of the government’s plans to scrap the IR35 reforms took the contracting world by surprise, but IT contractors are being warned against making hasty changes to the way they work just yet. Continue Reading
-
News
07 Oct 2022
Oracle unveils 5G cloud-native network analytics suite
Data giant claims to put communications network data analytics function first with portfolio of statistical and predictive 5G network core analytics services Continue Reading
-
News
07 Oct 2022
Barracuda looks to new CRO to share best practices
Security player’s recently appointed CRO will look at how it can take the best bits of its global channel activities and share them to improve its routes to market Continue Reading
-
News
07 Oct 2022
Bolt drivers take legal action over employment status
Drivers argue they have been wrongly classified as self-employed, and are seeking backdated wages and holiday pay Continue Reading
-
Feature
07 Oct 2022
Can MSPs get cyber security ‘right’ for SMEs?
The pressure is on for managed service providers to protect SMEs from cyber attack Continue Reading
-
News
07 Oct 2022
Broadcasters reveal 5G, satellite connectivity deployment for live coverage of Queen’s funeral
Standalone 5G network in a box and integrated wireless connectivity based on Starlink satellite broadband used in live remote broadcast production in coverage of transport of late Queen to Edinburgh Airport and of London funeral Continue Reading
-
News
07 Oct 2022
Satellite 5G boost as SES-20 and SES-21 launches confirmed
As part of its plan to continue delivering network services while freeing up C-band spectrum to enable the deployment of 5G across the US, satellite operator SES has announced the successful launch of its SES-20 and SES-21 craft Continue Reading
-
News
07 Oct 2022
Australia to amend telecoms regulations following Optus breach
Amendments to Australia’s telecoms regulations are in the works to temporarily allow sharing of individuals’ identifier information between telcos and financial institutions Continue Reading
-
News
07 Oct 2022
Private investors back innovators to boost African connectivity
Local operator research finds nearly four out of five VC and private equity firms believe innovation in connectivity will drive expansion in Africa, despite infrastructure issues Continue Reading
-
Opinion
07 Oct 2022
IT Sustainability Think Tank: Getting to grips with greenwashing
How can IT leaders separate fact from fiction when weighing up a tech supplier’s sustainability claims? And, crucially, what are the dangers or risks that enterprises face if they do not do their due diligence on the green claims of their providers? Continue Reading
-
News
06 Oct 2022
HashiCorp Waypoint public beta adds fresh take on PaaS
The sales pitch for HashiCorp Waypoint sounds a lot like traditional PaaS, but its technical approach may be uniquely well-suited to the recent rise of DevOps platform engineering. Continue Reading
-
News
06 Oct 2022
Yellowfin enhances NLQ tool in analytics platform update
The release is the vendor's first since being acquired by Idera in early 2022 and builds on natural language query features it first launched in late 2021. Continue Reading