Security and Networking Resources

Advisory Sites


US-Cert - United States Computer Emergency Readiness Team
CSRC-NIST - Computer Security Resource Center, National Institute of Standards and Technology
Secunia - Hosts a massive advisory list and also produces various computer security products
SecurityFocus - Security Focus Web Portal
Attrition.org - A collection of internet and computer resources and articles, specializing in dataloss

Security and Networking Tools


PuTTY - Free SSH and telnet client
Nmap - Network scanning and mapping tool
Nessus - Tenables vulnerability scanning tool, both free and commercial
Solar Winds Tools - Free and commercial network tools
Nikto - Web scanning tool from CIRT
Metasploit - Research tool for exploits, pen-testing, IDS/IPS sig development
Snort - Open source IDS/IPS
Wireshark - Open source network protocol analyzer
TeraTerm - Free console port tool
Sguil - Free IDS console
IPCop - Free SOHO linux based firewall
MSBA - Microsoft Baseline Security Analyzer

Certifications


CISSP - Certified Information Systems Security Professional from ISC2
GIAC - Global Information Assurance Certification
CISCO - Various Certs from CISCO such as CCNA, CCNA Security, CCNP, CCSP
Comptia - Various certs such as Network+, Security+
HISPI - Holistic Information Security Practitioner

Government Resources


FTC - Federal Trade Commision
HIPAA - US Department of Health and Human Services HIPAA site
FISMA - NIST site on FISMA
GLBA - Gramm-Leach Bliley Act on FTC
Sarbanes-Oxley - SEC page on SOX