Solution SOA Security
SOA Security Solution
SOA Security Solution
News
RSA 2012
From February 27th to March 2nd 2012, CORISECIO will be part of the world’s largest IT security conference in San Francisco. On the RSA CORISECIO will present Open Source solutions for Cloud Security. You can find us at booth 1342.
Version 1.2 of the SOA Security Gateway is available now. A download of the SSF Gateway is now available for all interested parties at: http://secrt.corisecio.com.
CORISECIO released the Open XML Gateway after a successful Public Beta Test. Using it companies may protect their Web Services in an efficient and easy way against threats. It is available as a free download.

Secure Cloud Computing with use of the securityRunTime (secRT)


Cloud Computing Services like Amazon’s EC2 Service or Google's AppEngine become more and more attractive for companies. Their appeal mostly is based on their dynamically available and scalable infrastructure.

The vast theme, mainly influencing the acceptance of Cloud Computing, is Security. Severe security concerns for business critical data transferred to the Cloud mainly refer to areas like integrity and privacy. For these areas CORISECIO provides solutions like DB-Offline Encryption for Cloud Computing Security based on their Open Source Security platform secRT.

Authentication & Authorization Service using SAML Tokens


CORISECIO has implemented Security Services for authentication and authorization, as part of the OSBF interoperability project. At accessing the Cloud a user may be authorized for working in the Cloud via an authentication service. Additionally appropriate rights are allocated to him by an authorization service. This authorization is done via existing meta directories.

Based on the authentication and authorization the solution evaluates its security policy. The service generates SAML token containing the successful authentication as well as the appropriate rights. Then this SAML token is sent to the Cloud provider via the internet. The SAML Standard is supported by an increasing number of Cloud Service Providers.

Find additional information:

You need further informations?
Our Support-Team is looking forward to assist you.
In SOA Infrastructures threats like viruses, malware, SQL injections and data theft are also a problem like in typical infrastructures. Organizations must protect their systems against these threats.

Typical SOA security solutions completely ignore these threats. Using the CORISECO solutions SOA Security and Malware Filter you may protect your SOA with typical SOA security methods and additionally protect the infrastructure against classic threats like viruses.

Find more information about this topic on the page SOA Security and Malware Filter.
SOA Security Enterprise
SOA Security Enterprise enables you to model security processes customized to your organization´s demands. Complex security scenarios can be realized with only a few mouse clicks.

CORISECIO has enhanced the BPEL standard with security elements and therefore provides the possibility to design security processes like business processes. Using the modeling functions of CORISECIO SOA Security Enterprise it is not necessary to change the applications which have to be protected.

Did you know that CORISECIO SOA Security provides you with the possibility to obtain central security services for the SOA infrastructure in your organization? CORISECIO makes it possible to encapsulate security functionality in SOA compliant services, which can be provided at a central point in the infrastructure.

This enables a provision of e.g. a central signature service which may be used by various business processes. Find out more about CORISECIO SOA Security.
The Open Source Security Framework secRT is developed as an Eclipse project and provides a multitude of functions for the protection of SOA infrastructures.

Basics like an Entity and Key Management are included in the secRT, which enables the company to reliably protect SOA infrastructures within a short period of time. Using the Workflow Engine you may define security processes with a few mouse clicks.

Try out the Open Source secRT now!