Home > Services > IT Security > Information Security Services
- solutions
- vertical solutions
- takeaway pdfs
Take them, share them...
Business Continuity and Disaster Recovery P... (936KB)
Emergency Management for Higher Education (297KB)
Emergency Management for Schools (325KB)
Emergency Management Services (PDF, 322KB)
Information Security Outsourcing (PDF, 364KB)
Information Security Services (PDF, 313KB)
IT Security for State & Local Government (PDF, 286KB)
IT Security in Higher Education (PDF, 176KB)
Security Assessment (PDF, 281KB)
Third Party Risk Management Services (PDF, 318KB)
- white papers
- webinars
- articles
- news
Managing Third Party Risk
Some sources of risk that may not be top-of-mind include your service providers,
web hosting services, contractors, outsourcers, supply-chain nodes, consulting
services, and travel services—any number of outside entities having custody
of or access to your sensitive information. If your extended enterprise includes
these third parties, you need a way to manage this risk.
Take the white paper (4.5MB)
Higher Education Disaster Readiness: Customizing Effective, Affordable Solutions
The increasing range and impact of threats to school systems today are driving
the requirement for higher education institutions to provide more comprehensive
and robust emergency readiness and response than has been expected of them
in the past. There is much to be done to create
emergency management programs that are effective.
Take the white paper (1MB)
Business Impact Analysis: Foundation For Operational Risk Management
This white paper explains the relationship of BIA to each of the elements of
operational risk management (ORM). It describes the components and process of BIA, and demonstrates how
BIA can be leveraged to drive ORM programs and expenditures. The intended
audience includes organizational senior managers, operational risk managers,
and functional managers.
Take the white paper (992KB)
IT Security Operational Maturity: Why You Need More Than Personal Heroism and Silver Bullets
This white paper illustrates the many business drivers shaping IT security, emerging
risks, and the need to transform your security program into one that’s operationally
mature. After reading this white paper, you’ll understand how to direct investments in
your organization’s IT security program to achieve security results that are consistent,
reliable, effective, affordable, and auditable.
Take the white paper (540KB)
Securing Your Constituents and Institutional Information
In this presentation of Security by Example by Carolyn Ryll, you will shake your heads at common mistakes, but learn how not to make them yourself.
Third Party Risk Management: Do your vendors protect your sensitive data as you would?
Join CIBER for a complimentary webinar that will illustrate ways in which your organization can identify and mitigate risks posed by those third party vendors who have access to your sensitive and mission-critical data as a normal course of doing business with you.
IT Security Operational Maturity: Imaginary Superheroes or Sound Solutions?
If your organization is relying on individual point solutions, personal heroism, or other “silver bullets” to secure its IT assets, it may be time to face the kryptonite.
Business Impact Analysis: Foundation for Operational Risk Management
This webinar will teach you ways in which your organization’s risk management activities can be enhanced by applying Business Impact Analysis (BIA) methodologies.
IT Security Maturity in Higher Education
Learn how to transform your institution’s security program into an operationally mature program that permanently reduces risk.
Local Government Emergency Services: Setting
Yourself Up for Success
This article, by CIBER’s A.J. Briding first appeared in IAEM Bulletin in
October 2007
Local
Government Emergency Services: Partnering With Your IT Department
This article, by CIBER’s A.J. Briding first appeared in IAEM Bulletin in August 2007
Local Government Emergency Services: The Necessity for Thoroughness
This article, by CIBER’s A.J. Briding and Jerry Sneed, Director, Office of Emergency Preparedness, City of New Orleans, first appeared in IAEM Bulletin in February 2007
01 Mar 2010
CIBER Strategic Partnership with CNL Software Enhances CIBERSecure
Read the press release |
Take the PDF (25KB)
16 Feb 2010
CIBER Selected for Integrated Port Security Project at Georgia Port Authority
Read the press release |
Take the PDF (25KB)
09 Nov 2009
CIBER Completes Database and Reporting System for the Investment Fund for Foundations (TIFF)
Read the press release |
Take the PDF (25KB)
07 Oct 2009
CIBER Wins $14 Million Security Contract with New International Port, Misurata Free Zone, Libya
Read the press release |
Take the PDF (25KB)
24 Jun 2009
CIBER Announces Contract Renewal and Expansion With Gate Gourmet
Read the press release |
Take the PDF (25KB)
21 May 2009
CIBER Goes Live With Four University PeopleSoft Admission and Financial Aid Implementations
Read the press release |
Take the PDF (25KB)
20 Apr 2009
CIBER Announces Five-Year Outsourcing Contract Renewal With Sharp Electronics
Read the press release |
Take the PDF (25KB)
24 Mar 2009
CIBER and Deluxe to Present at Boston SecureWorld Conference
Read the press release |
Take the PDF (25KB)
03 Nov 2008
CIBERSecure Enables Coordinated Security Response For Command and Control Centers
Read the press release |
Take the PDF (25KB)
08 Oct 2008
Denver Public Schools Selects CIBER for Human Resources Business Transformation
Read the press release |
Take the PDF (25KB)
22 Jul 2008
CIBER Partners with Carnegie Mellon University’s Software Engineering Institute to Provide Training Services
Read the press release |
Take the PDF (25KB)
12 Jun 2008
CIBER Consultant A.J. Briding Earns Top Certification in Organizational Resilience
Read the press release |
Take the PDF (25KB)
- client quote
“CIBER demonstrated outstanding experience working with other major cities, like the City of San Francisco, in creating strong e-Gov offerings that resulted in high citizen satisfaction. Based on their hands-on experience, 30-year history of successfully working with local governments and their commitment to creating a strong local presence, we selected CIBER as our strategic web management partner. We are confident CIBER has the expertise to help us develop a site and service offering that will benefit our citizens now and for years to come and place our City in the top tier of ‘best practices for City e-government web services’.”
Dr. Melodie Mayberry-Stewart — Chief Technology Officer, City of Cleveland
Security blog
Manage Operational Risk Like a Bank!
posted: 08 June 2009 by Eric Tompkins
IT Assessment Cost vs. Value – A Market Response Analysis
posted: 06 May 2009 by Matthew Sharp
For more information about our Information Security Services services & solutions, please contact:
bbird@ciber.com
Bonnie Bird
Manager, Marketing
Information Security Services
Today businesses are faced with complex choices when it comes to security and information assurance—choices that must carefully balance protection, cost, and risk. Preventing unwanted business interruptions, media exposure, investigations, regulatory and contractual non-compliance, and lawsuits are becoming a frequent board room discussion topic. As reports emerge about significant financial losses, information protection is now a shareholder concern.
While the marketplace offers many options to protect information systems, the operationally mature techniques needed to implement and manage security controls and effectively protect an enterprise can be elusive. It is vital to select a security partner with the right mix of experience and specialized expertise to achieve reliable, consistent protection at a reasonable cost.
“One size fits all” technical security solutions are not the right answer. Security is more than just technology—our solutions include the programmatic elements and management processes needed to ensure our clients get the maximum benefit from their security technology investments.
Why CIBER?
CIBER’s Global Security Practice has more than 15 years of experience securing the information assets of businesses and government entities. We design and deploy comprehensive security solutions that protect high-profile systems in high-risk environments, such as:
- Conducting Third Party Risk Management services for one of the largest US financial institutions and one of the largest providers of prescriptions and health-related services in the nation.
- Protecting $2 trillion in annual, high-volume, electronic funds transactions for the Department of Treasury
- Protecting the privacy and integrity of vital records, lottery transactions, and private healthcare information for state governments
A Balanced Approach between Business and Security
CIBER delivers operationally mature, strategic protection for your critical information assets in three stages: (1) Defining your security goals, (2) Achieving your optimum security posture, and (3) Maintaining your secure position.
Defining Your Security Goals
Building an effective security program requires assessing your current situation. CIBER offers a suite of assessment programs to evaluate security practices, vulnerabilities, risks, regulatory compliance, and enterprise security strategy.
CIBER provides you with a comprehensive, objective review of the presence and effectiveness of security controls in your organization. CIBER assessment programs include:
Business Impact Analysis
- Criticality criteria development
- Critical business process definition/prioritization
- Critical resource definition
- Recovery time objective development
Risk and Vulnerability Assessment
- Programmatic review
- Application security testing
- Perimeter & internal network vulnerability testing including penetration testing
- Network device & system configuration review
- Wireless security testing
Regulatory Compliance Analysis
- Universal security frameworks
- Requirements traceability and forecasting
- Readiness planning for HIPAA, GLB, PCI-DSS, Sarbanes-Oxley, and third-party contract requirements
Enterprise Security Strategy
- Security program planning
- Security architecture development
- Achievable security roadmaps
- Business continuity strategy selection
Identity Theft Assessment
- Business application and database surveys to determine location of personal information storage
- Evaluation of control effectiveness
Achieving Your Optimum Security Posture
CIBER delivers comprehensive solutions that blend technology, processes, and people to strategically reduce security risk. Companies bombarded by technology-driven point solutions appreciate CIBER’s enterprise risk management perspective and vendor neutrality. We tailor security solutions to your needs, fix/solve security issues at the root cause, and deliver cost-effective security with minimal disruption to your business.
Turn to CIBER for:
- Application security review
- Third party risk management
- PCI DSS services including audit preparation, audit, and compliance maintenance
- Security technology and process integration
- Independent verification and validation
- Security policy and procedure development
- Remediation of security deficiencies
- Security training and knowledge transfer
- Business continuity program development
- Emergency management planning
- Disaster recovery planning
- Security incident response
Maintaining Your Secure Position
CIBER’s managed security services include a full range of monitoring and management services for reliable, consistent protection:
- Real-time 24x7 event monitoring
- Security device management
- Vulnerability management
- Patch Management
- Incident investigation, response and recovery
- Event correlation
- Compliance reporting
CIBER clients benefit from a professional security staff at a fraction of the cost of creating their own. Trained security professionals in our fully staffed, 24 X 7 Security Operations Center monitor security events in your infrastructure and applications using a best-of-breed data collection and event correlation platform.
We combine our expertise, business acumen, and state-of-the-art tools to ensure reported events are actual threats before releasing alerts. Our response includes recommending a course of action or carrying out defensive measures according to your customized response criteria. We provide the metrics and reporting necessary to comply with regulations and database breach laws and to demonstrate to CEOs/Boards, auditors and customers that sensitive information is continually protected.
Take it, share it...
For more detailed information, download the full version
(PDF, 313KB)




