SYS-CON MEDIA Authors: Elizabeth White, Yeshim Deniz, Pat Romanski, Nikita Ivanov, Sean Houghton

News Feed Item

Tripwire Donates Cybersecurity Analytics Cloud Service to Penn State

Tripwire, Inc., a leading global provider of risk-based security and compliance management solutions, today announced a gift of a cloud-based risk and analytics cybersecurity service to the Center for Cyber Security, Information Privacy and Trust at Penn State’s College of Information Sciences and Technology (IST). The non-exclusive license grant provides a license to Tripwire® Benchmark, a cloud-based risk and analytics cybersecurity service. Penn State has valued the technology at $11.75 million, and it is the single largest contribution the College of IST has received to date.

“This very significant gift provides unique opportunities for the College of IST for research, education and outreach,” said Dr. David Hall, dean of the College of Information Sciences and Technology. “Our research in cyber security, big data analytics and discovery, and human-computer interaction match very well with Tripwire’s evolving database and toolkit. We will be able to use this gift in classroom exercises and in the curricula for our undergraduate Security and Risk Analysis (SRA) major and graduate program in Cyber Security and Information Assurance. We are very thankful for Tripwire’s generosity and will display the gift prominently in the IST Building’s new laboratory.”

Tripwire selected Penn State for this donation to further the education of future cybersecurity leaders as well as develop a community of experts that share information and analytics unavailable from other sources. The free service will help address the serious economic and national security issues presented by cybersecurity risks.

“We’re excited about our partnership with Penn State’s College of IST,” said Rod Murchison, vice president of product management for Tripwire and Penn State alumnus. “Our goal is to support their renowned security and risk analysis program and help mold the next generation of cybersecurity leaders. In addition, this donation has the potential to have an enduring and positive impact on today’s cybersecurity professionals by providing the kind of industry analytics necessary to maximize the value of existing security investments.”

The growing national focus on information assurance and cybersecurity and a worldwide shortage of information security experts has organizations of every size looking for objective, transparent analytics that can accurately assess risk and maximize the effectiveness of security and compliance investments. The new Penn State service is designed to deliver security performance metrics, scorecards and analytics that help organizations worldwide do the following:

  • Build risk-based security and compliance management programs based on objective, fact-based metrics.
  • Prove that existing security investments and resources are protecting the organization as well as identify areas of weakness that need additional investment.
  • Benchmark security performance against internal goals and industry peers.
  • Trend risk-based security performance metrics over time.

The grant will also be used by Penn State for additional cybersecurity research and the development of new metrics.

Penn State's College of IST is a leader in cybersecurity risk analysis and has been designated a National Center of Academic Excellence in Information Assurance Education by the National Security Agency and the Department of Homeland Security. The unique, interdisciplinary security and risk analysis programs at Penn State are designed to teach students how to secure systems, evaluate and measure risk, and ensure proper levels of privacy protection.

The free Penn State security analytics cloud service is available today to any organization that would like to measure the effectiveness of their IT security investments. For more information and access to security and risk metrics, scorecards, and benchmarks please visit https://benchmark.ist.psu.edu/.

About Tripwire

Tripwire is a leading global provider of risk-based security and compliance management solutions, enabling enterprises, government agencies and service providers to effectively connect security to their business. Tripwire provides the broadest set of foundational security controls including security configuration management, vulnerability management, file integrity monitoring, log and event management. Tripwire solutions deliver unprecedented visibility, business context and security business intelligence allowing extended enterprises to protect sensitive data from breaches, vulnerabilities, and threats. Learn more at www.tripwire.com, get security news, trends and insights at http://www.tripwire.com/state-of-security/ or follow us on Twitter @TripwireInc.

More Stories By Business Wire

Copyright © 2009 Business Wire. All rights reserved. Republication or redistribution of Business Wire content is expressly prohibited without the prior written consent of Business Wire. Business Wire shall not be liable for any errors or delays in the content, or for any actions taken in reliance thereon.

Latest Stories
What do a firewall and a fortress have in common? They are no longer strong enough to protect the valuables housed inside. Like the walls of an old fortress, the cracks in the firewall are allowing the bad guys to slip in - unannounced and unnoticed. By the time these thieves get in, the damage is already done and the network is already compromised. Intellectual property is easily slipped out the back door leaving no trace of forced entry. If we want to reign in on these cybercriminals, it's hig...
The 3rd International Internet of @ThingsExpo, co-located with the 16th International Cloud Expo - to be held June 9-11, 2015, at the Javits Center in New York City, NY - announces that its Call for Papers is now open. The Internet of Things (IoT) is the biggest idea since the creation of the Worldwide Web more than 20 years ago.
Fundamentally, SDN is still mostly about network plumbing. While plumbing may be useful to tinker with, what you can do with your plumbing is far more intriguing. A rigid interpretation of SDN confines it to Layers 2 and 3, and that's reasonable. But SDN opens opportunities for novel constructions in Layers 4 to 7 that solve real operational problems in data centers. "Data center," in fact, might become anachronistic - data is everywhere, constantly on the move, seemingly always overflowing. Net...
SYS-CON Events announced today Isomorphic Software, the global leader in high-end, web-based business applications, will exhibit at SYS-CON's DevOps Summit 2015 New York, which will take place on June 9-11, 2015, at the Javits Center in New York City, NY. Isomorphic Software is the global leader in high-end, web-based business applications. We develop, market, and support the SmartClient & Smart GWT HTML5/Ajax platform, combining the productivity and performance of traditional desktop software ...
The definition of IoT is not new, in fact it’s been around for over a decade. What has changed is the public's awareness that the technology we use on a daily basis has caught up on the vision of an always on, always connected world. If you look into the details of what comprises the IoT, you’ll see that it includes everything from cloud computing, Big Data analytics, “Things,” Web communication, applications, network, storage, etc. It is essentially including everything connected online from ha...
The 4th International DevOps Summit, co-located with16th International Cloud Expo – being held June 9-11, 2015, at the Javits Center in New York City, NY – announces that its Call for Papers is now open. Born out of proven success in agile development, cloud computing, and process automation, DevOps is a macro trend you cannot afford to miss. From showcase success stories from early adopters and web-scale businesses, DevOps is expanding to organizations of all sizes, including the world's large...
How do APIs and IoT relate? The answer is not as simple as merely adding an API on top of a dumb device, but rather about understanding the architectural patterns for implementing an IoT fabric. There are typically two or three trends: Exposing the device to a management framework Exposing that management framework to a business centric logic Exposing that business layer and data to end users. This last trend is the IoT stack, which involves a new shift in the separation of what stuff happe...
The security devil is always in the details of the attack: the ones you've endured, the ones you prepare yourself to fend off, and the ones that, you fear, will catch you completely unaware and defenseless. The Internet of Things (IoT) is nothing if not an endless proliferation of details. It's the vision of a world in which continuous Internet connectivity and addressability is embedded into a growing range of human artifacts, into the natural world, and even into our smartphones, appliances, a...
The Internet of Things promises to transform businesses (and lives), but navigating the business and technical path to success can be difficult to understand. In his session at @ThingsExpo, Sean Lorenz, Technical Product Manager for Xively at LogMeIn, demonstrated how to approach creating broadly successful connected customer solutions using real world business transformation studies including New England BioLabs and more.
"ElasticBox is an enterprise company that makes it very easy for developers and IT ops to collaborate to develop, build and deploy applications on any cloud - private, public or hybrid," stated Monish Sharma, VP of Customer Success at ElasticBox, in this SYS-CON.tv interview at DevOps Summit, held Nov 4–6, 2014, at the Santa Clara Convention Center in Santa Clara, CA.
SYS-CON Events announced today that Gridstore™, the leader in hyper-converged infrastructure purpose-built to optimize Microsoft workloads, will exhibit at SYS-CON's 16th International Cloud Expo®, which will take place on June 9-11, 2015, at the Javits Center in New York City, NY. Gridstore™ is the leader in hyper-converged infrastructure purpose-built for Microsoft workloads and designed to accelerate applications in virtualized environments. Gridstore’s hyper-converged infrastructure is the ...
P2P RTC will impact the landscape of communications, shifting from traditional telephony style communications models to OTT (Over-The-Top) cloud assisted & PaaS (Platform as a Service) communication services. The P2P shift will impact many areas of our lives, from mobile communication, human interactive web services, RTC and telephony infrastructure, user federation, security and privacy implications, business costs, and scalability. In his session at @ThingsExpo, Robin Raymond, Chief Architect...
"Matrix is an ambitious open standard and implementation that's set up to break down the fragmentation problems that exist in IP messaging and VoIP communication," explained John Woolf, Technical Evangelist at Matrix, in this SYS-CON.tv interview at @ThingsExpo, held Nov 4–6, 2014, at the Santa Clara Convention Center in Santa Clara, CA.
An entirely new security model is needed for the Internet of Things, or is it? Can we save some old and tested controls for this new and different environment? In his session at @ThingsExpo, New York's at the Javits Center, Davi Ottenheimer, EMC Senior Director of Trust, reviewed hands-on lessons with IoT devices and reveal a new risk balance you might not expect. Davi Ottenheimer, EMC Senior Director of Trust, has more than nineteen years' experience managing global security operations and asse...
DevOps is all about agility. However, you don't want to be on a high-speed bus to nowhere. The right DevOps approach controls velocity with a tight feedback loop that not only consists of operational data but also incorporates business context. With a business context in the decision making, the right business priorities are incorporated, which results in a higher value creation. In his session at DevOps Summit, Todd Rader, Solutions Architect at AppDynamics, discussed key monitoring techniques...