White Papers

Request a Demo

Please select from our list of White Papers.

Newest White Papers

Security Metrics Supporting Business Initiatives
Business initiatives often require investments in IT security, yet those investments are not always well understood or even fully supported by executives around the boardroom table. In this whitepaper Tony Bradley examines how CISOs can better use security performance metrics to enable and support business decisions and initiatives.

IT Security and Business Risk - The State of the Conversation
IRG decided to investigate the state of the dialog between IT security and the business, in part to ascertain the current state-of-the-art and in part to better understand if there were additional tools that IT security vendors could provide to help. This whitepaper is an assessment of the state of the dialog.

Getting the Most Value from Your Vulnerability Management and Compliance Programs
This whitepaper discusses several solutions to the most common problems encountered before, during, and after the initial deployment of a Vulnerability Management or Compliance Solution and how careful consideration of these items can assist in making program more effective.

Vulnerability Management Evolution: From Tactical Scanner to Strategic Platform
Mike Rothman, analyst at Securosis, discusses focusing vulnerability management processes on the systems that are most important to the business.

Defending Your Small Business against Cyber Crime
This white paper investigates why cyber criminals are targeting small businesses and four ways to improve the security of small to medium business networks.

Advanced Persistent Threats: Using nCircle Suite360 for an Advanced Persistent Defense
Read this white paper to learn what are Advanced Persistent Threats, how they occur, and how organizations can defend their networks by developing an Advanced Persistent Defense using nCircle Suite360.

Security Benchmarking: Going Beyond Metrics
Mike Rothman, analyst at Securosis, discusses the need for common metrics and benchmarks for Information Security.

Best Practice Requirements for Successful Metrics Initiatives
nCircle provides metrics initiative best practices for enterprise software and supporting management disciplines.

Applying Consistent Metrics to Risk and Compliance Programs
This white paper discusses how to use performance management metrics and scorecards to safeguard information assets.

Seven Steps to IT Security Metrics Success
In this whitepaper, nCircle will review the seven critical steps of any metrics initiative, as outlined by The SANS Institute.

Five Critical Steps of a Complete Security Risk and Compliance Lifecycle
An overview of the critical steps for a mature IT organization's security risk and compliance lifecycle.

Configuration Auditing – The Next Critical Step in Compliance
Presents the value of configuration auditing for a comprehensive security and compliance program

Regulatory Compliance White Papers

nCircle Solutions for Automating the Consensus Audit Guidelines Critical Security Controls
Describes in detail nCircle's support for the Consensus Audit Guidelines. The nCircle Solutions for Automating the Consensus Audit Guidelines Critical Security Controls white paper is also available in html.

nCircle Solutions for NIST Special Publication 800-53 Revision 3
Describes in detail the mapping of nCircle's support for NIST SP 800-53

nCircle Solutions for NERC CIP Compliance
Describes how nCircle’s capabilities map to the NERC CIP requirements. This NERC CIP white paper is also available in html.

Achieving PCI Compliance with nCircle Solutions
nCircle's solutions for helping your organization become PCI compliant.

Sarbanes-Oxley Compliance: Leveraging Automated Control Objective Auditing
Leveraging nCircle solutions to comply with Sarbanes-Oxley. This Sarbanes-Oxley (SOX) white paper is also available in html.

Complying with the Federal Information Security Management Act FISMA
nCircle solutions for FISMA compliance. This FISMA white paper is also available in html.

Automating HIPAA Compliance with Security and Configuration Auditing
Using nCircle solutions to automate HIPAA Security Rule compliance. This HIPAA Compliance white paper is also available in html.

Financial Services Modernization: IP360 And Gramm-Leach-Bliley Act Compliance
Overview of nCircle IP360 and GLBA regulations. The GLBA white paper is also available in html.

General White Papers

Configuration Auditing – The Next Critical Step in Compliance
Presents the value of configuration auditing for a comprehensive security and compliance program

Comprehensive Security Risk and Compliance Reporting
Using nCircle reports and analytics to improve security and achieve compliance. The Comprehensive Security Risk and Compliance Reporting white paper is also available in html.

CSO's Guide to Security and Compliance
Five steps to improving security and compliance for C-level audiences. The CSO's Guide to Security and Compliance white paper is also available in html.

Agentless Comes of Age
Streamlined Approaches to Administration and Authentication

nCircle WebApp360: It’s Here and We Like It!
Enterprise Management Associates writes about nCircle’s web applications scanning product WebApp360.

IT Risk Management for the Real World
Enterprise Management Associates’ take on nCircle’s security and compliance audit suite.

Change is the Enemy of Security And Compliance
Ten common changes in the enterprise network and how to identify and manage these changes and associated risks.

Proactive Network Security: Making Your Network Unassailable
Discusses the benefits of taking a proactive approach to securing your network.

nCircle Vulnerability Scoring System
Describes nCircle's next-generation method of scoring vulnerabilities and compares with legacy scoring systems. The nCircle Vulnerability Scoring System white paper is also available in html.

The nCircle Precision Metric: Proactively Improving the Quality of Vulnerability Management
A technical disucssion of nCircle VERT's Precision Metric of evaluating the quality of vulnerability and configuration discovery checks.

Vulnerability Management Technology Report
An independent review of nCircle IP360 by West Coast Labs.

Proactively Measuring And Managing Risk in the Enterprise
An in-depth, technical discussion on measuring network security risk.

Holistic Network-Based Device Profiling: A Systemic Methodology for Next-Generation Vulnerability Scanning
A technical discussion of nCircle's unique method of assessing systems for vulnerabilities.

Top 10 Tangible Measures for Effective Information Risk Management
Discusses metrics and methods for effective risk management. By analyst David Lacey.