• 04 Sep 2009

    My latest security content

    My goodness - it's been over a month since I've posted my latest security content...I've been so busy writing the stuff that posting the links has gotten put on the back burner. Good problem to have! Anyway, here's my latest:Networking to enhance your IT careerToeing the company line – is it good or bad for your IT career?Security and compliance can go together, when done in the right orderMaking sense ...

    Continue Reading...
  • 30 Aug 2009

    Good summary of the new HIPAA rules

    As you may know the ARRA government growth bill passed by President Obama earlier this year contains something called the HITECH Act that brings a whole new meaning to the word "HIPAA". There's a lot of mixed information about on the Web (no surprise) but I recently came across a page that lays out the essentials of the HITECH Act very clearly. Definitely worth checking out if your organization does ...

    Continue Reading...
  • 30 Jul 2009

    GAO reports federal infosec failures – seriously?!

    So the people in our own Imperial Federal Government has failed yet another security test!? You know, the same people who force us (at gunpoint if necessary) to become secure and stay secure.Some highlights:Twenty of the 24 agencies had inadequate information security controls that were considered a material weakness or a significant deficiency.A 200% increase in security incidents over the past three years...It's a "major management challenge"...even with an unlimited ...

    Continue Reading...
  • 27 Jul 2009

    My latest security content

    Here's my latest information security article I wrote for SearchSMBStorage.com you may be interested in:Making sense of regulatory compliance and data storage for SMBs As always, be sure to check out www.principlelogic.com/resources.html for all of my information security articles, podcasts, webcasts, screencasts, my Twitter updates, and more....

    Continue Reading...
  • 20 Jul 2009

    Imagine signing off on something you haven’t read

    Jeff Jacoby with the Boston Globe made an excellent point in his article regarding the Read The Bills Act (the law we need to prevent our own lawmakers from carelessly passing laws they haven't read nor understand).Jeff said: "Senators and representatives who vote on bills they haven't read and don't understand betray their constituents' trust. It is no excuse to say that Congress would get much less done if every ...

    Continue Reading...
  • 15 Jul 2009

    One of the best infosec books ever written

    I had the opportunity and pleasure to do the technical editing on this book by my friend and colleague Becky Herold:The Shortcut Guide to Understanding Data Protection from Four Critical PerspectivesThis book is hands-down one of the best books out there on information security and why it matters to the business. Becky doesn't simply regurgitate the same old stuff either (not that I would expect her to). She has many ...

    Continue Reading...
  • 07 Jul 2009

    My latest security content

    I'm taking this week off but I've scheduled this post of three new articles I've written that you may be interested in:Networking to enhance your IT careerA compliance officer, secure network aren't enough for real complianceData retention policies and procedures for SMBsAs always, be sure to check out www.principlelogic.com/resources.html for all of my information security articles, podcasts, webcasts, screencasts and more....

    Continue Reading...
  • 22 Jun 2009

    My latest security content

    OK, I've been busy and my articles have been stacking up. Here's the first set that were recently published. More to come later this week.Dumb things IT consultants doWhy it may not be ideal for your lawyer to be your compliance officerKeys to finding your IT consulting nicheIs all the PCI DSS compliance whining and complaining justified?Scoping your Web app security assessments for successEnjoy!As always, be sure to check out ...

    Continue Reading...
  • 11 May 2009

    My latest security content

    Here's my latest information security content - more from the queue coming soon...just waiting for it to be published.Here's a webcast I recorded for SearchCIO.com:Continuous Data Protection (CDP) Strategies for the EnterpriseHere are two whitepapers I wrote for Realtimepublishers.com on behalf of Credant:Navigate the Future of HIPAA ComplianceData Protection for the Evolving WorkforceAs always, be sure to check out www.principlelogic.com/resources.html for all of my information security articles, podcasts, webcasts, screencasts ...

    Continue Reading...
  • 27 Apr 2009

    My latest security content

    Here's my latest information security content for your perusal.For starters, here's an article I wrote for Security Technology Executive magazine:Social Engineering: The big risk no one's thinking aboutHere's an article I re-published for a local Atlanta site called TechLINKs:How's your information security culture?Here's a bit I wrote for SearchDataBackup.com:Data security concerns with online backup...and here's a podcast I recorded for SearchCompliance.com:The future of compliance policy managementAs always, be sure to ...

    Continue Reading...