The Brave New World of InfoSec
Mon 2009-03-23 09:52:05

Can you imagine if code was written poorly for NASA and the Space Shuttle program? Sorry astronauts, no oxygen today due to a coding buffer overflow. My apologies but we just wanted to get this out the door fast and all the features and use cases for the app work just fine so what’s your beef!?!

Thu 2009-03-19 05:58:49

Beware of institutions that have been infiltrated by infidels and who do not represent our beliefs even though they claim to focusing directly on Egypt and the Kingdom of Saudi Arabia.

Mon 2009-03-16 16:42:43

"Determining the origins of individual and sex-specific odors -- and controlling exogenous chemical contaminants -- may provide the most important challenge for future … studies," the researchers said.

Mon 2009-03-16 09:42:20

I would recommend that the Obama administration require all companies receiving bailout dollars to disclose any and all security and risk posture information including audit findings, threat and vulnerability information, incidents, breaches, and other such items.

Mon 2009-03-16 06:16:34

There are many bloggers out there in the blogosphere but a couple that need some recognition.

Fri 2009-03-06 17:26:16

FUD is rising to the surface once again and some CISOs are getting away with past negligence by calling in the fire even when they may be the arsonist.

Fri 2009-03-06 15:08:31

Every once in a while we do the lighter side. It is that time again to get a chuckle and get our taxonomy corrected and some images that truly depict our current state of affairs.

Fri 2009-02-27 11:05:09

Machine readable ontologies that interrelate as entities such as incident, control, threat, asset, vulnerability, impact, and risk non-inclusively could be crafted to create a near real-time awareness messaging solution. The ability to create awareness ontologies exists today with many readily available tools. And awareness is just one of the options. Assurance across the whole infrastructure is possible.

Tue 2009-02-24 10:49:54

Determine the risk appetite of the company. Let them know that you are going to enable all filters for 1 week across all protocols and share this information only with senior members of Legal, Compliance, Privacy, HR, Internal Audit and the CIO.

Tue 2009-02-17 13:52:41

At one point, we were restricted to our location due to the targeting of US Military and civilian personnel in this area. Airlines were being targeted for hijackings by various Palestinian groups and by Carlos the Jackal. We knew which airlines to avoid since these groups were extorting money from various governments not to be hijacked. The governments paid.