Mobile App Anti-Tampering Controls

We presented earlier this year at the RSA eFraud Global Forum on the topic of mobile app anti-tampering effectiveness.  The focus of this talk was on the runtime attack surface of iOS apps and the benefits of deploying self-defending techniques into higher risk mobile...

Securing the Point of Sale Device

It has been confirmed by Target and American Express that 40 million credit and debit cards have been compromised across the retail chain’s point-of-sale (POS) environment.  The breach occurred across most or all of Target’s stores in the United States. To...

Streamline PCI compliance with a GRC Tool

If your organization is required to be compliant with the PCI DSS, consider the following 4 ways that a GRC tool can help reduce common headaches.  If you’d like to discuss how to achieve these benefits with a GRC tool, send an email to info@sra.io.   Carl...

Social Engineering Past 2-Factor Authentication

Two-factor remote access can go a long way to make compromised network passwords less useful to an attacker; however, gaps in procedures and training can make even these robust security controls useless.  To illustrate, here’s a short story from one of my many pen...

Top 5 Benefits of Implementing a GRC Tool

Audits, risk assessments, regulatory exams, vendor assessments, vulnerability scans, penetration tests, security incidents, policy exception requests, business continuity and disaster recovery plans….is your organization drowning in this stuff?  Is it a challenge to...