Top security breaches of 2014

By Chris Heller • February 3, 2015

Check out this chart for the top breaches…

Date (2014) Company Number of records exposed Types of records
25 Jan Michael’s 2,600,000 payment cards
6 Feb Home Depot 20,000 employee info
14 Mar Sally Beauty Supply 25,000 credit/debit card
17 Apr Aaron Brothers 400,000 payment cards
22 Apr Iowa State University 48,729 student social security numbers
30 May Home Depot 30,000 credit/debit card
22 Jul Goodwill Industries 868,000 payment systems
18 Aug Community Health Systems 4,500,000 patient data
21 Aug United Postal Service 105,000 credit/debit card
28 Aug JP Morgan Chase 1,000,000 financial information
2 Sep Home Depot 56,000,000 credit/debit card
2 Sep Viator/Trip Advisor 880,000 payment cards
25 Sep Central Dermatology 76,258 patient data
7 Nov Home Depot 53,000,000 email addresses
10 Nov US Postal Service 800,000 personal data
18 Nov Staples 1,200,000 credit/debit card

This isn’t a comprehensive list by any means, but it’s clear that businesses and other organisations are regularly losing large amounts of confidential data to increasingly well-organised cybercriminals.

Put the Appsian Security Platform to the Test

Schedule Your Demonstration and see how the Appsian Security Platform can be tailored to your organization’s unique objectives

2014 HEUG member survey

By Chris Heller • February 3, 2015

Put the Appsian Security Platform to the Test

Schedule Your Demonstration and see how the Appsian Security Platform can be tailored to your organization’s unique objectives

Shelley Nelson Joins GreyHeller as Vice President of Services

By Chris Heller • January 29, 2015
Shelley Nelson

Shelley Nelson,
Vice President of Services

San Ramon, California – January 28, 2015 – GreyHeller, LLC, provider of the leading security and modernization software for legacy ERP systems, today announced the appointment of Shelley Nelson as Vice President of Services. Shelley will have worldwide responsibility for customer implementation projects and support and will serve as a member of GreyHeller’s senior leadership team. Shelley will report to Larry Grey, President, GreyHeller.

“We are pleased to welcome Shelley to GreyHeller and look forward to Shelley’s delivering 100% customer success and satisfaction,” said Larry. “I’ve worked with Shelley in the past. Her 20-plus years of experience make her ideal to lead all of our customer-facing initiatives.”

“I am excited to be a part of an organization that is totally focused on making their customers successful,” Shelley said. “Joining GreyHeller is a fantastic opportunity and I am excited to help the company grow to its full potential.”

Previously, Shelley launched Services for Lisam America which grew to 90 customers. Prior to Lisam, she served as Vice President, Global Support for TomorrowNow where she achieved top 10% worldwide IT-industry customer satisfaction and 98% customer reference rating (TNS Global rating). Before joining TomorrowNow, Shelley spent 6 years at PeopleSoft leading Financials systems implementations and as a Financials systems developer.

About GreyHeller

GreyHeller’s award winning software modernizes and secures legacy ERP systems. ERP Firewall protects ERP sensitive data from cyber criminals. PeopleMobileÒ modernizes and mobilizes legacy ERP platforms, giving customers an option to costly system replacement. GreyHeller’s products are used by nearly 100 customers worldwide across all industries.

Put the Appsian Security Platform to the Test

Schedule Your Demonstration and see how the Appsian Security Platform can be tailored to your organization’s unique objectives

CYBERSECURITY PRIORITIES SHIFT TO INSIDER THREATS

By Chris Heller • January 7, 2015

The Sony breach – and virally every other recent high profile breach – has finally driven home what GreyHeller has been saying for some time – that the insider threat vector is as dangerous as the perimeter threat vector.

This survey of Federal IT managers in both civilian and defense sectors supports our view: Survey Cybersecurity priorities-shift insider threats

Security concerns from the survey:

  • Cyber hygiene
  • Phishing
  • Malware
  • Spam tactics

Interestingly, data breaches and cyber espionage were further down the list. Really??!! We couldn’t agree less – data breach (leakage, unintentional disclosure, spillage) – is as serious a threat vector as any.

Finding ways to mitigate and remediate after a breach have got to be on the top of any organization’s cybersecurity priority list.

Put the Appsian Security Platform to the Test

Schedule Your Demonstration and see how the Appsian Security Platform can be tailored to your organization’s unique objectives

Cybersecurity Tipping Point? Absolutely.

By Chris Heller • January 6, 2015

We’ve been talking about this tipping point for some time now.

Supporting our view…

  • The Cybersecurity Tipping Point – from TechCrunch
    1. Assume you are always under attack
    2. Security must be dynamic and software-defined
    3. Information sharing is critical to security

Put the Appsian Security Platform to the Test

Schedule Your Demonstration and see how the Appsian Security Platform can be tailored to your organization’s unique objectives

GreyHeller January Security Webinar Series

By Chris Heller • January 6, 2015

January 5, 2015 – San Ramon, CA – GreyHeller today announced an Insider Threat Security Webinar Series focused on helping organizations protect their ERP sensitive data from malicious and inadvertent insider threats.

The Insider Threat Series will use recent, high profile breaches at Sony and higher education institutions as examples of what could have been done to prevent insider threat attacks.

“Cyber security priorities have shifted in recent years to insider threats as the top attack vector,” said Greg Wendt, GreyHeller’s Executive Director of Security Solutions. “These types of breaches can be mitigated with rigorous ERP system Credentials Management, strict employee training and implementing two-factor authentication, logging and analytics.”

The Insider Threat Security Webinar Series is part of GreyHeller’s commitment to educate users of major ERP systems on how to fight cyber crime and prevent their organizations from becoming the next news headline.

GreyHeller will deep dive into:

  • Two-Factor Authentication
  • REN-ISEC Recommendations for HCM
  • Logging and Analysis
  • Data Masking
  • Location Based Security

Each webinar is an hour long and begins at 11:00am PST. For more information and to register, click here.

Insider Threat Security Webinar Series

About GreyHeller

GreyHeller’s software solutions help nearly 100 global organizations secure their ERP sensitive data from cyber crime. For more information about GreyHeller, please visit www.greyheller.com.

Put the Appsian Security Platform to the Test

Schedule Your Demonstration and see how the Appsian Security Platform can be tailored to your organization’s unique objectives

January 2015 Security Webinar

By Chris Heller • December 31, 2014
Join us for a Series of Informative and Timely Security Webinars hosted by Larry Grey, President, and Greg Wendt, Executive Director, Security Solutions & Services.

Examine Proven Steps to Protect your Organization from Cyber Attack.
No organization is safe from cyber attack Whether the threat vector is a phishing attack or privileged user compromise, there are proven steps you can take to protect your PeopleSoft sensitive data.
This webinar series will examine recent security breaches at major commercial organizations and higher education institutions and what could have been done to protect against these attack.
Larry and Greg willdeep dive into: Two - Factor Authentication, REN-ISEC Recommendations for HCM, Logging & Analysis, Data Masking, Location - Based Security
January 7th – Secure PeopleSoft – Higher Ed
+
Universities are being targeted by cyber criminals who have learned that student, faculty and employee self-service systems contain as much sensitive information as do banks and retailers. Learn how GreyHeller can help your institution detect and/or prevent breaches to your PeopleSoft systems. We will examine the following Use Cases:
Admissions
Financial Aid
Custom applications: health forms and
legal documents
Faculty Access to info: Grades and Rosters

Click to Register

January 14th – Secure PeopleSoft – Human Resources
+
PeopleSoft HCM customers are being targeted by cyber criminals who have learned that employee self-service systems contain as much sensitive information as do banks and retailers. Learn how GreyHeller can help protect your HR sensitive data. We will examine the following Use Cases:
Employee Self-Service
SSN; Direct Deposit; Benefits;
Personal Information; etc.
Manager Self-Service
Approvals; Workflow

Click to Register

January 21st – GreyHeller and Duo: Delivering Two-Factor Authentication
+
This co-sponsored webinar will demonstrate how GreyHeller and Duo Security have partnered to bring rigorous two-factor authentication to PeopleSoft systems. This demo-intensive session will show how to implement and manage an effective 2FA system for all PeopleSoft systems, including HCM and Campus Solutions. We will discuss best practices to provisioning and managing users.

Click to Register

We look forward to you and your team joining us in any or all of our series of timely security seminars. If you have any questions contact or email Kelly Jones at (925) 415-5127 or [email protected].
GreyHeller

Join us for a Series of Informative and Timely Security Webinars hosted by Larry Grey, President, and Greg Wendt, Executive Director, Security Solutions & Services.

Examine Proven Steps to Protect your Organization from Cyber Attack.
No organization is safe from cyber attack Whether the threat vector is a phishing attack or privileged user compromise, there are proven steps you can take to protect your PeopleSoft sensitive data.
This webinar series will examine recent security breaches at major commercial organizations and higher education institutions and what could have been done to protect against these attack.
Larry and Greg willdeep dive into: Two - Factor Authentication, REN-ISEC Recommendations for HCM, Logging & Analysis, Data Masking, Location - Based Security
January 7th – Secure PeopleSoft – Higher Ed
+
Universities are being targeted by cyber criminals who have learned that student, faculty and employee self-service systems contain as much sensitive information as do banks and retailers. Learn how GreyHeller can help your institution detect and/or prevent breaches to your PeopleSoft systems. We will examine the following Use Cases:
Admissions
Financial Aid
Custom applications: health forms and
legal documents
Faculty Access to info: Grades and Rosters

Click to Register

January 14th – Secure PeopleSoft – Human Resources
+
PeopleSoft HCM customers are being targeted by cyber criminals who have learned that employee self-service systems contain as much sensitive information as do banks and retailers. Learn how GreyHeller can help protect your HR sensitive data. We will examine the following Use Cases:
Employee Self-Service
SSN; Direct Deposit; Benefits;
Personal Information; etc.
Manager Self-Service
Approvals; Workflow

Click to Register

January 21st – GreyHeller and Duo: Delivering Two-Factor Authentication
+
This co-sponsored webinar will demonstrate how GreyHeller and Duo Security have partnered to bring rigorous two-factor authentication to PeopleSoft systems. This demo-intensive session will show how to implement and manage an effective 2FA system for all PeopleSoft systems, including HCM and Campus Solutions. We will discuss best practices to provisioning and managing users.

Click to Register

We look forward to you and your team joining us in any or all of our series of timely security seminars. If you have any questions contact or email Kelly Jones at (925) 415-5127 or [email protected].
GreyHeller