White Papers

In order to download any or all white papers, please register below:

Targeted Attacks
Author:  Michael Cotton, CISSP, Chief Network Security Architect, Vulnerability Research, Digital Defense, Inc.

Learn about some common methods used by hackers during targeted network attacks and some steps you should take to combat them.

Vulnerability Management in the Cloud - More Secure than Premise-based Delivery
Author:  Gordon MacKay, CISSP, Chief Technology Officer, Digital Defense, Inc.

Learn about two types of vulnerability management deliveries, cloud-based and premised-based. Challenges with vulnerability management are discussed and differences and advantages between cloud-based vulnerability management delivery and premise-based solutions are addressed.

Vulnerability Assessment vs. Penetration Testing
Author:  Brandon Shilling, CISSP, Director, Vulnerability Research, Digital Defense, Inc.

The security industry is befuddled with vague, conflicting, and incorrect statements regarding vulnerability assessments and penetration tests. This paper explains the elements of a vulnerability assessment and those of a penetration test, describes the differences between the two activities and shows how these two activities are typically related within an ongoing security program.

Risk Assessments - Setting The Foundation
Author:  Tom DeSot, NSA-IAM, Chief Compliance Officer, Digital Defense, Inc.

Learn how to determine what information security-related threats affect your organization, and what to do to determine if you are protected.

Automated Teller Machine Deployment: Security Best Practices
Author:  Rob Kraus, CISSP, Supervisor, Remote Security Services

Secure ATM services are crucial to financial institutions. Learn about the security risks and how to apply security best practices whether you are deploying ATMs, or maintaining existing services.

Securing The Hospital IT Infrastructure
Author:  Geoff Humes, CISSP, Manager, Remote Security Services

Hospitals today are facing ever increasing security risks as new technologies, such as VoIP and PACS, are continually being converged with legacy systems. Learn today how you can be proactive in ensuring that your systems are secure.

Analyst-Led Vs Automated Penetration Testing
Author:  Geoff Humes, CISSP, Manager, Remote Security Services

Why is analyst-led penetration testing beneficial and preferred to automated penetration testing? Learn the differences here.

Understanding Intrusion Prevention System "Whitelisting" and Assessing Firewalls
Author:  Mark B. Bell, CISSP, CISA, Executive Vice President of Operations

This paper discusses two topics that seem to generate a large amount of confusion throughout the industry among IT staff and/or security practitioners: the concept of "whitelisting" and assessing firewalls.

Thwarting Social Engineering Attacks
Author:  Tom DeSot, NSA-IAM, Chief Compliance Officer, Digital Defense, Inc.

How your organization responds to social engineering attacks has a direct bearing on whether or not the attack is successful, and whether or not subsequent attacks can be thwarted as well. Find out how here.

Laptop Theft
Author:  Ricky Crow, CISSP, Digital Defense, Inc.

There is an upward trend of laptop theft, which is growing year after year. Learn about precautions you can take to help secure your laptop.

Age-Old Wisdom For Internet Security
Author:  Duane Verzone, CISSP, Digital Defense, Inc.

Learn about things you can do to protect yourself when navigating the Internet here.

When All Else Fails...
Author:  Duane Verzone, CISSP, Digital Defense, Inc.

Even if you have done everything you can think of to protect your network, you can still become a victim of a Zero-day exploit. Find out more here.

Introduction To Computer Security Incident Handling
Author:  Troy Deisinger, CISSP, GCIH, GCUX, RHCT, Digital Defense, Inc.

Security incidents are virtually unavoidable. Learn about developing a well-thought approach to securing network resources, and a prepared response to security incidents.

* denotes a required field!
Company* 
First Name* 
Last Name* 
Business Email* 
Retype Email* 
 


Silver Sponsor

DDI Managed Vulnerability Service to the Rescue!

DDI News!
  • DDI's Vulnerability Research Capabilities Lead to Another Zero-Day Disclosure — ACTi and Twonky™ Directory Traversal. Get the details.
  • Gartner Security & Risk Management Summit 2012: DDI prepares to exhibit at the premier gathering of enterprise IT security and risk management executives in Washington, D.C., June 11-14, 2012. Get more information.
  • Using Remote Desktop Protocol? Critical Vulnerability Could Mean Attack and Breach. Read about it here.
  • On April 20, in Austin, Texas, Digital Defense participates in the first of four different cyber security educational seminars hosted by Frost Insurance. DDI CEO, Larry Hurtado, shares his insights on why cyber security is a critical component of any Risk Management program. Larry Hurtado at the cyber security educational seminar hosted by Frost Frost Insurance Logo
  • DDI supports San Antonio Mayor Julian Castro in his Cyber Security Awareness efforts
    DDI supports San Antonio Mayor Julian Castro in his Cyber Security Awareness efforts
  • Digital Defense's Frontline™ 5.0 Spurs Rapid Vulnerability Remediation via Cloud Community Competition. Read more.
  • GVTC Engages Digital Defense To Safeguard Critical Networks LeWayne Ballard, Engineer Systems Compliance, GVTC, says DDI is helping to "streamline our vulnerability remediation lifecycle, resulting in a higher level of focus on our core business objectives." Read more.
  • DDI's Chief Technology Officer, Gordon MacKay, shows his medal of appreciation as a CIO panel participant at the Association of Information Technology Professionals 17th Annual National Collegiate Conference. DDI's Chief Technology Officer, Gordon MacKay, shows his medal of appreciation as a CIO panel participant at the Association of Information Technology Professionals 17th Annual National Collegiate Conference that was held in San Antonio, TX March 29-31. He was honored for speaking to a group of 650 college computer science students from all over the United States as they prepare to enter into the information technology industry.
  • DDI’s Vulnerability Research Team releases information regarding their discovery of the Axway SecureTransport '/icons/' Directory Traversal vulnerability with a HIGH severity rating.
    Click here for details.
  • Visit our new Vulnerability Research and Security Analytics Blog todayVisit our new Vulnerability Research and Security Analytics Blog today at DDI Labs.
DDI is a certified PCI ASV (Approved Scanning Vendor) Click here to view a demo of our Security Training Education and Awareness Module.


Click here to view the latest CVE vulnerabilities

Valid XHTML 1.0 Transitional Valid CSS!

This site has been optimized for FF2/3 and IE7/IE8. Site functionality may be reduced when utilized with other web browsing software.

Homeland Security Portal
The Homeland Security Portal is an interactive platform and informative arena where industry professionals can register, advertise and obtain publicly available information regarding new products, new technologies, industry news, case studies, investment opportunities and much more.