Home > Services > IT Security > Information Security Services
- solutions
- vertical solutions
- takeaway pdfs
Take them, share them...
Business Continuity and Disaster Recovery P... (936KB)
Emergency Management for Higher Education (297KB)
Emergency Management for Schools (325KB)
Emergency Management Services (PDF, 322KB)
Information Security Outsourcing (PDF, 364KB)
Information Security Services (PDF, 313KB)
IT Security for State & Local Government (PDF, 286KB)
IT Security in Higher Education (PDF, 176KB)
Security Assessment (PDF, 281KB)
Third Party Risk Management Services (PDF, 318KB)
- white papers
- webinars
- articles
- news
Managing Third Party Risk
Some sources of risk that may not be top-of-mind include your service providers,
web hosting services, contractors, outsourcers, supply-chain nodes, consulting
services, and travel services—any number of outside entities having custody
of or access to your sensitive information. If your extended enterprise includes
these third parties, you need a way to manage this risk.
Take the white paper (4.5MB)
Business Impact Analysis: Foundation For Operational Risk Management
This white paper explains the relationship of BIA to each of the elements of
operational risk management (ORM). It describes the components and process of BIA, and demonstrates how
BIA can be leveraged to drive ORM programs and expenditures. The intended
audience includes organizational senior managers, operational risk managers,
and functional managers.
Take the white paper (992KB)
Securing Your Constituents and Institutional Information
In this presentation of Security by Example by Carolyn Ryll, you will shake your heads at common mistakes, but learn how not to make them yourself.
Third Party Risk Management: Do your vendors protect your sensitive data as you would?
Join CIBER for a complimentary webinar that will illustrate ways in which your organization can identify and mitigate risks posed by those third party vendors who have access to your sensitive and mission-critical data as a normal course of doing business with you.
IT Security Operational Maturity: Imaginary Superheroes or Sound Solutions?
If your organization is relying on individual point solutions, personal heroism, or other “silver bullets” to secure its IT assets, it may be time to face the kryptonite.
Business Impact Analysis: Foundation for Operational Risk Management
This webinar will teach you ways in which your organization’s risk management activities can be enhanced by applying Business Impact Analysis (BIA) methodologies.
IT Security Maturity in Higher Education
Learn how to transform your institution’s security program into an operationally mature program that permanently reduces risk.
Local Government Emergency Services: Setting
Yourself Up for Success
This article, by CIBER’s A.J. Briding first appeared in IAEM Bulletin in
October 2007
Local
Government Emergency Services: Partnering With Your IT Department
This article, by CIBER’s A.J. Briding first appeared in IAEM Bulletin in August 2007
Local Government Emergency Services: The Necessity for Thoroughness
This article, by CIBER’s A.J. Briding and Jerry Sneed, Director, Office of Emergency Preparedness, City of New Orleans, first appeared in IAEM Bulletin in February 2007
05 Aug 2010
CIBER Reports Second Quarter Results
Read the press release |
Take the PDF (25KB)
04 Aug 2010
CIBER a Strategic Partner to Alion for DOD Technology Support Contract Valued at Up to $2 Billion
Read the press release |
Take the PDF (25KB)
08 Jul 2010
CIBER Promotes Bill Hazelton to Senior Vice President, Commercial Operations
Read the press release |
Take the PDF (25KB)
02 Jun 2010
CIBER Successfully Completes Lawson Quickstep Enterprise Software Implementation for J.R. Watkins Naturals
Read the press release |
Take the PDF (25KB)
14 Apr 2010
CIBER Successfully Completes Upgrade to Hillsborough County Public School’s Lawson Applications
Read the press release |
Take the PDF (25KB)
14 Apr 2010
CIBER Schedules First Quarter 2010 Earnings Release and Conference Call
Read the press release
22 Mar 2010
CIBER’s Principle Express Pack (PEP) Named an Oracle Accelerate Solution
Read the press release |
Take the PDF (25KB)
04 Mar 2010
CIBER, Inc. Files 2009 Form 10-K
Read the press release |
Take the PDF (25KB)
04 Mar 2010
CIBER Develops Air Pollution Data Collection System For Connecticut Department of Environmental Protection
Read the press release |
Take the PDF (25KB)
02 Mar 2010
CIBER to Present at The ROTH Capital Partners 22nd Annual Growth Stock Conference
Read the press release |
Take the PDF (25KB)
01 Mar 2010
CIBER Strategic Partnership with CNL Software Enhances CIBERSecure
Read the press release |
Take the PDF (25KB)
26 Feb 2010
CIBER Introduces Solution For Sophisticated Manufacturing Industry
Read the press release |
Take the PDF (25KB)
- client quote
“CIBER demonstrated outstanding experience working with other major cities, like the City of San Francisco, in creating strong e-Gov offerings that resulted in high citizen satisfaction. Based on their hands-on experience, 30-year history of successfully working with local governments and their commitment to creating a strong local presence, we selected CIBER as our strategic web management partner. We are confident CIBER has the expertise to help us develop a site and service offering that will benefit our citizens now and for years to come and place our City in the top tier of ‘best practices for City e-government web services’.”
Dr. Melodie Mayberry-Stewart — Chief Technology Officer, City of Cleveland
For more information about our Information Security Services services & solutions, please contact:
bbird@ciber.com
Bonnie Bird
Manager, Marketing
Information Security Services
Today businesses are faced with complex choices when it comes to security and information assurance—choices that must carefully balance protection, cost, and risk. Preventing unwanted business interruptions, media exposure, investigations, regulatory and contractual non-compliance, and lawsuits are becoming a frequent board room discussion topic. As reports emerge about significant financial losses, information protection is now a shareholder concern.
While the marketplace offers many options to protect information systems, the operationally mature techniques needed to implement and manage security controls and effectively protect an enterprise can be elusive. It is vital to select a security partner with the right mix of experience and specialized expertise to achieve reliable, consistent protection at a reasonable cost.
“One size fits all” technical security solutions are not the right answer. Security is more than just technology—our solutions include the programmatic elements and management processes needed to ensure our clients get the maximum benefit from their security technology investments.
Why CIBER?
CIBER’s Global Security Practice has more than 15 years of experience securing the information assets of businesses and government entities. We design and deploy comprehensive security solutions that protect high-profile systems in high-risk environments, such as:
- Conducting Third Party Risk Management services for one of the largest US financial institutions and one of the largest providers of prescriptions and health-related services in the nation.
- Protecting $2 trillion in annual, high-volume, electronic funds transactions for the Department of Treasury
- Protecting the privacy and integrity of vital records, lottery transactions, and private healthcare information for state governments
A Balanced Approach between Business and Security
CIBER delivers operationally mature, strategic protection for your critical information assets in three stages: (1) Defining your security goals, (2) Achieving your optimum security posture, and (3) Maintaining your secure position.
Defining Your Security Goals
Building an effective security program requires assessing your current situation. CIBER offers a suite of assessment programs to evaluate security practices, vulnerabilities, risks, regulatory compliance, and enterprise security strategy.
CIBER provides you with a comprehensive, objective review of the presence and effectiveness of security controls in your organization. CIBER assessment programs include:
Business Impact Analysis
- Criticality criteria development
- Critical business process definition/prioritization
- Critical resource definition
- Recovery time objective development
Risk and Vulnerability Assessment
- Programmatic review
- Application security testing
- Perimeter & internal network vulnerability testing including penetration testing
- Network device & system configuration review
- Wireless security testing
Regulatory Compliance Analysis
- Universal security frameworks
- Requirements traceability and forecasting
- Readiness planning for HIPAA, GLB, PCI-DSS, Sarbanes-Oxley, and third-party contract requirements
Enterprise Security Strategy
- Security program planning
- Security architecture development
- Achievable security roadmaps
- Business continuity strategy selection
Identity Theft Assessment
- Business application and database surveys to determine location of personal information storage
- Evaluation of control effectiveness
Achieving Your Optimum Security Posture
CIBER delivers comprehensive solutions that blend technology, processes, and people to strategically reduce security risk. Companies bombarded by technology-driven point solutions appreciate CIBER’s enterprise risk management perspective and vendor neutrality. We tailor security solutions to your needs, fix/solve security issues at the root cause, and deliver cost-effective security with minimal disruption to your business.
Turn to CIBER for:
- Application security review
- Third party risk management
- PCI DSS services including audit preparation, audit, and compliance maintenance
- Security technology and process integration
- Independent verification and validation
- Security policy and procedure development
- Remediation of security deficiencies
- Security training and knowledge transfer
- Business continuity program development
- Emergency management planning
- Disaster recovery planning
- Security incident response
Maintaining Your Secure Position
CIBER’s managed security services include a full range of monitoring and management services for reliable, consistent protection:
- Real-time 24x7 event monitoring
- Security device management
- Vulnerability management
- Patch Management
- Incident investigation, response and recovery
- Event correlation
- Compliance reporting
CIBER clients benefit from a professional security staff at a fraction of the cost of creating their own. Trained security professionals in our fully staffed, 24 X 7 Security Operations Center monitor security events in your infrastructure and applications using a best-of-breed data collection and event correlation platform.
We combine our expertise, business acumen, and state-of-the-art tools to ensure reported events are actual threats before releasing alerts. Our response includes recommending a course of action or carrying out defensive measures according to your customized response criteria. We provide the metrics and reporting necessary to comply with regulations and database breach laws and to demonstrate to CEOs/Boards, auditors and customers that sensitive information is continually protected.
Take it, share it...
For more detailed information, download the full version
(PDF, 313KB)