Security, Tips and Techniques

What you need to know about the reported PS_Token vulnerability

By Hendrix Bodden • September 4, 2015

Appsian has been offering security assessments to both customers and non-customers around the potential of a PS_TOKEN configuration vulnerability. Over the past month, we have posted to our blog that PeopleSoft is arguably the most secure ERP platform on the market. The blog contains links to the PeopleSoft red paper and additional information about proper configuration of PeopleSoft to mitigate potential vulnerabilities of PS_TOKEN configuration.

In this session, Greg Wendt, Executive Director, Security Solutions, talks about numerous takeaways learned from our PS_TOKEN assessments. Topics include:

  • Mitigation options
  • Best practices
  • Lessons learned
  • Incident Response
  • Defense-in-depth for PeopleSoft

Stay Updated

Security, Tips and Techniques

GreyHeller Sessions and Customer Sessions @ Alliance2015

By Hendrix Bodden • March 11, 2015

GreyHeller is thrilled to showcase our Mobile and Security solutions and our customers’ sessions at Alliance 2015.  From announcing new partnerships, to launching your institution’s mobile strategy, to practical ways to protect your ERP systems, there’s a session that fits your needs.

Also joining us, Shelley Nelson, VP, Services and Greg Wendt, Executive Director of Security Solutions.  Shelley is responsible for Customer Implementation and Support and will be available in our booth to discuss ongoing customer projects and answer questions about implementation best practices for our Mobile & Security products. Greg was past Chairman of the TAG and will be available in our booth to discuss Security and best practices to protect your institution from cybercrime.

3/16 ERP Security Analytics & Intrusion Prevention Session: 34465 Time: 2:15p – 3:15p Presenter: Larry Grey, President and Greg Wendt, Executive Director Description:  ESAIP – based on our ERP Firewall technology – secures your PeopleSoft data with prebuilt dashboards, alerts, and analytics based on automated, enterprise-wide event data collection.

3/17  Modo Labs + GreyHeller: Together, Making the Impossible, Possible Session: 34467 Time: 1:00p – 1:30p Presenters: Larry Grey, President and Andrew Yu, Founder & CTO, Modo Labs Description: GreyHeller and Modo Labs have partnered to deliver powerful mobile solutions to PeopleSoft customers. Join us for a brief demonstration of the deep integration between PeopleMobile® and the Kurogo™ Mobile Campus. The demonstration will include Student/Faculty and HCM use cases and disclose how your organization can benefit from our groundbreaking partnership.

3/16  Mobile My Madison – PeopleSoft Mobile at James Madison University Session: 34402 Time: 2:15p – 3:15p Presenter: Tariq Rabie, Applications Development and Support, James Madison University Description: JMU recently implemented mobile access to self-service components of PeopleSoft Interaction Hub,Campus Solutions and Human Capital Management in a short timeframe, implementing GreyHeller’s PeopleMobile® product. Learn how in approximately 2 months, JMU provided a pilot mobile deployment and then turned around in approximately 2 additional months to provide full access of its customized PeopleSoft environment to its students.

3/17 Mobilizing the Student Service  Experience – UT Dallas and PeopleMobile® Session: 34141 Time: 03:15 p – 4:15p Presenter: Ryan Meyers, Business Analyst/Developer IV, University of Texas at Dallas Description:  UT Dallas recently implemented the first component of its overall mobile strategy. At this session we will present UTD’s overall mobile strategy and how UTD is delivering PeopleSoft on mobile devices to its students and faculty. This session will include a demonstration of UTD’s mobile system. It will include a discussion on UTD’s technology evaluation, implementation best practices and lessons learned during the project.

3/16 GreyHeller Application Firewall – enhance security! Session: 34635 Time: 3:45p – 4:45p Presenter: Sharron Bouquin, Auxilary Services Development Manager, University of North Carolina at Chapel Hill Description:  UNC-CH  implemented the GreyHeller ERP Firewall, providing an enhanced level of security to its applications. At this session UNC-CH will present how they implemented the product, provided additional levels of security and filled some unique gaps!  They will also cover ‘next steps’ with their implementation plans.

3/17 Protect your Users and Data in PeopleSoft with 2 Factor Authentication Session: 34388 Time: 1:45p – 02:45p Presenter: Ryan McDaniel, Assistant Director of Identity and Access Management, University of Colorado Description:  The UC has successfully implemented 2 factor authentication using ERP Firewall and Duo Security.  Come by for an overview of their implementation, demonstration of functionality, and plans for the future.

Stay Updated

Security

GreyHeller Presents a FREE Webinar Series

By Hendrix Bodden • August 18, 2014

 Join us for a series of informative webinars hosted by Larry Grey, President, Chris Heller, Chief Technology Officer and Greg Wendt, Executive Director, Security Solutions & Services.

MOBILIZE PEOPLESOFT

Mobilizing PeopleSoft — Campus Solutions Sept. 10, 2014   11am-Noon (PDT) Learn how to mobilize your entire PeopleSoft application in 90 days or less, including customizations.
Mobilizing PeopleSoft — HCM  Sept. 17, 2014   11am-Noon (PDT) Learn how to mobilize your entire PeopleSoft application in 90 days or less, including customizations.
Mobilizing PeopleSoft — Financialsand Supply Chain Sept. 24, 2014   11am-Noon (PDT) Learn how to mobilize your entire PeopleSoft application in 90 days or less, including customizations.

SECURE PEOPLESOFT

How to Implement Two-Factor Authentication Oct. 1, 2014   11am-Noon (PDT) Learn how to use 2FA to protect your data, determine which functions are right for you and how 2FA will benefit your constituents
Logging and Analysis & Incident Response Oct. 8, 2014   11am-Noon (PDT) Learn how to implement a full circle logging practice, use logs for performance tuning, incident response and more!
We hope to see you there!We encourage you to forward this e-mail message to colleagues who may also be interested in attending.Can’t make the webinar?Register for more information and to be added to our webinar invite list.

Stay Updated

Security

GreyHeller Appoints New Executive Director of Security Solutions

By Hendrix Bodden • July 17, 2014

Organizations seek protection of their Oracle PeopleSoft applications from cybercrime

San Ramon, California – July 15, 2014

Today, GreyHeller announced the hiring of Greg Wendt as the Executive Director of Security Solutions to further develop GreyHeller’s security products suite and to work directly with Oracle’s PeopleSoft customers to protect their sensitive data from cybercrime. In his role, Wendt will assume oversight of the security platform and operations, with responsibility for product and customer solutions. “I believe Oracle’s PeopleSoft is the best ERP system on the planet. I’ve worked with the platform since 2009 and with GreyHeller since 2011 when we implemented GreyHeller’s mobile and security systems at TCU. GreyHeller is well positioned to help organizations extend their investment in PeopleSoft,” said Greg.

Wendt is a recognized leader in PeopleSoft application architecture, data security and business operations and comes to GreyHeller with more than 17 years of experience. Greg has held top technology positions at industry-leading organizations, including RadioShack and Texas Christian University (TCU). “Greg has extensive experience as a PeopleSoft security expert. Together, we understand what is needed to help protect PeopleSoft users from cybercrime. We expect to establish GreyHeller’s security software suite as the de facto standard for protecting customers’ PeopleSoft systems,” stated Hendrix Bodden, GreyHeller’s CEO.

Wendt led implementations and PeopleSoft upgrades at TCU and RadioShack and the implementation of GreyHeller at TCU. He served as the Chairman of HEUG Tag (Technical Advisory Group), an international organization consisting of Higher Education institutions that use Oracle application software and helps guide its members on product strategy. As a certified ethical hacker, Greg has taught numerous criminal justice and cyber security courses focusing on hacking techniques. “I look forward to helping PeopleSoft customers understand their security risks and to developing tools to resolve these risks. Cyber criminals have figured out that ERP systems store as much sensitive information as do banks. I am honored to join GreyHeller in its mission to protect PeopleSoft customers from criminal breach,” said Wendt.

Trademarks

Oracle and Java are registered trademarks of Oracle and/or its affiliates. Other names may be trademarks of their respective owners.

Stay Updated