Storage Frequently asked questions-Storage Security FAQ:
Frequently asked questions-Storage Security FAQ
Check out Kevin's answers to these storage security questions or download them as an MP3 file and take them with you on the go.
Hacking and encryption:
1 - 3 of 3-
Can a SAN or NAS environment really be hacked if it's behind a firewall?
FAQ - Absolutely. Many people think that as long as their SAN or NAS is behind a firewall then everything is protected -- this is a myth of network security...
-
What's the best way to lock down mobile drives to keep them secure?
FAQ - You have several options. You can perform full disk encryption or just encrypt a specific partition on the drive. There are pros and cons to each...
-
What should you do if you can't realistically encrypt everything, like many people are interpreting
(presented by SearchDataBackup.com)
FAQ - Bottom line: Don't do it. You have to look at the security vulnerabilities in your own environment, determine what is at risk, decide just what you're trying to protect and follow the security/compliance laws and regulations pertaining to your own...
Concepts and tools:
1 - 3 of 3-
Are there any ways you'd recommend getting management on board to support my storage security needs?
FAQ - I come across this barrier all the time. Basically, you have to "sell" upper management on information security...
-
What is storage security? What activities does it entail?
FAQ - You could actually write a collection of books on this very subject. I define storage security as a set of technical controls...
-
How can I get a handle on unstructured information in my environment?
FAQ - This interesting topic is often overlooked, but I see it increasingly in my security assessment work today. Unstructured information is difficult to secure because...
Testing and best practices:
1 - 2 of 2-
How can I convince my network admin that data at rest is more vulnerable than data in transit?
FAQ - It's easy for developers and network administrators to downplay vulnerabilities, but that's not reality. Data in transit can be vulnerable...
-
What are some best practices for retaining data in a highly regulated business environment?
FAQ - Have a good information retention policy. I see a lot of organizations where they retain backups or copies of databases, but they don't know why they're retaining it or for how long...
Storage Management Strategies for the CIO