Methodology for Firewall Reviews for PCI Compliance
Auditing ASP.NET applications for PCI DSS compliance
Auditing Windows Environments PowerShell XML output, windows security, ossams
Base64 Can Get You Pwned
Scoping Security Assessments - A Project Management Approach
Wireless Networks and the Windows Registry - Just where has your computer been?
Auditing for Policy Compliance with QualysGuard and CIS Benchmarks
Successful SIEM and Log Management Strategies for Audit and Compliance
Choosing corporate level instant messaging system and implementing audit controls
Outsourced Information Technology Environment Audit
Effective Use Case Modeling for Security Information & Event Management
One Admin's Documentation is their Hacker's Pentest
Analyzing Enterprise PKI Deployments
Simple Windows Batch Scripting for Intrusion Discovery
Post Acquisition Audit in 30 Days
Auditing Nokia Firewall
Creating a Comprehensive Vulnerability Assessment Program for a Large Company Using QualysGuard
Auditing a Corporate Log Server
WiFi with BackTrack
NSS Vs NDS
Certification and Accreditation: A madmans dilemma - Costs
Certification and Accreditation: A madmans dilemma - Controls
Certification and Accreditation for Dummies
Certification and Accreditation (C&A) Vs System Development Life Cycle Management (SDLC)
A Taxonomy of Information Systems Audits, Assessments and Reviews
VPNScan: Extending the Audit and Compliance Perimeter
A Guide to Security Metrics
Aligning an information risk management approach to BS 7799-3:2005
An Introduction to Information System Risk Management
A Practical Guide to Auditing an ASP
Sarbanes-Oxley Information Technology Compliance Audit
B.A.S.E. - A Security Assessment Methodology
Information Systems Security Architecture: A Novel Approach to Layered Protection
The Application Audit Process - A Guide for Information Security Professionals
Information Systems Security Architecture A Novel Approach to Layered Protection
Using Vulnerability Assessment Tools To Develop an OCTAVE Risk Profile
Red Teaming: The Art of Ethical Hacking
Application Of The Nsa Infosec Assessment Methodology
Conducting an electronic information risk assessment for Gramm-Leach-Bliley Act compliance.
Security Program Management and Risk
Strategies for Improving Vulnerability Assessment Effectiveness in Large Organizations
Application Security, Information Assurance's Neglected Stepchild - A Blueprint for Risk Assessment
Information System Security Evaluation Team: Security Insurance?
The Art of Reconnaissance - Simple Techniques
Footprint Your Intranet
Footprinting: What Is It, Who Should Do It, and Why?
A Perspective on Threats in the Risk Analysis Process
System Identification for Vulnerability Assessment
Conducting a Penetration Test on an Organization
Port Scanning Techniques and the Defense Against Them
Distributed Scan Model for Enterprise-Wide Network Vulnerability Assessment
Auditing Inside the Enterprise via Port Scanning & Related Tools
An Overview of Threat and Risk Assessment
Seeking Security: The New Paradigm for Government Agencies
Case Study - TruSecure Security Certification
Proactive Vulnerability Assessments with Nessus
Information Classification - Who, Why and How
Evaluating Untrusted Software In a Controlled Environment
How-To Make Linux System Auditing a Little Easier
Quantitative Risk Analysis Step-By-Step
A Qualitative Risk Analysis and Management Tool - CRAMM
The Institutional Need for Comprehensive Auditing Strategies
Security Auditing: A Continuous Process
Network- and Host-Based Vulnerability Assessments: An Introduction to a Cost Effective and Easy to Use Strategy.
Data-Centric Quantitative Computer Security Risk Assessment
Wireless Network Audits using Open Source tools
Auditing-In-Depth For Solaris
Security Assessment Guidelines for Financial Institutions
Conducting a Security Audit of an Oracle Database
Defining a Risk Assessment Process for Federal Security Personnel