Here's a good read from security analyst/guru Mike Rothman on how penetration testing can help with compliance.The only thing I'd add is that you've gotta do more than traditional "pen testing" as we know it. And you've got to do it periodically and consistently. Not just one time. Use what I call the ethical hacking methodology that combines the best of penetration testing and general vulnerability testing. When seeking reasonable ...
Continue Reading...You've probably gathered that I have little respect for the intent and abilities of our Imperial Federal Government here in the U.S. Our "leader" politicians stay busy developing gimmicks like the gas tax holiday instead of coming up with real solutions, arguing about "global warming", making the evil rich pay their fair share of taxes (yeah right!), and prying into Major League baseball steroid use.They have their hands in virtually ...
Continue Reading..."Compliance as we know it is something that should’ve been in place in businesses all along - without the government having to intervene in the free market." --Yours Truly....
Continue Reading...If compliance is anywhere on your radar (I'm pretty sure that includes all of us!) then you've gotta check out Rebecca Herold's compliance blog and portal called the Realtime Community | IT Compliance. I've known and worked with Becky for years and can vouch for her level of knowledge in the compliance and privacy arenas. The hosting company for this site is Realtime Publishers for whom I've written a book ...
Continue Reading...