• 15 Jul 2009

    One of the best infosec books ever written

    I had the opportunity and pleasure to do the technical editing on this book by my friend and colleague Becky Herold:The Shortcut Guide to Understanding Data Protection from Four Critical PerspectivesThis book is hands-down one of the best books out there on information security and why it matters to the business. Becky doesn't simply regurgitate the same old stuff either (not that I would expect her to). She has many ...

    Continue Reading...
  • 16 Jun 2009

    Great site for getting your IT/security questions answered

    I may have already blogged about this but here it is again. It's TechTarget's IT Knowledge Exchange.Let's say you have a question about, oh, anything related to what we do in IT and security. You're going to get some good answers. I answer a fair amount of questions on the site and there are a lot of sharp people who contribute. And odds are you won't get flamed for asking ...

    Continue Reading...
  • 27 Apr 2009

    In case you missed RSA…

    Here's a page containing links to the keynote sessions at the conference last week. Some good - some not so much. Either way it's worth a look-see...and a listen. The Mythbusters "keynote" is on there as well!...

    Continue Reading...
  • 23 Feb 2009

    Want to know what a breach is going to cost?

    When writing a HIPAA-related whitepaper last week for the fine folks at Realtimepublishers.com (TONS of free papers and books on IT & security) I came across two good sites for calculating the cost of a data breach...VERY enlightening numbers from tools that have finally come of age. Keep these tools in mind when you're selling security and compliance to management (I know, it's sad you even have to): Becky Herold's ...

    Continue Reading...
  • 10 Feb 2009

    The ultimate irony?

    Looks like Kaspersky is the latest "victim" of a Web hack. Perhaps an example of focusing too much on one area of information security and not paying attention to the other things that matter??BTW, I just came across a site you may be interested in. It's kind of like the Privacyrights.org Chronology of Data Breaches...yet another way for us to keep up with what's going on out there - at ...

    Continue Reading...
  • 31 Dec 2008

    Very cool thing about the Sysinternals tools

    OK, I'm a bit late to the punch on this one but just in case you don't know, the awesome Sysinternals tools (a must-have for every security pro) are now available online for immediate access here. No more downloading, unzipping, etc. - just click and run...assuming you can get past your Web browser controls. ;)...

    Continue Reading...
  • 12 Nov 2008

    Excellent resource for hacking goodies

    Check out Adrian Crenshaw's site: www.irongeek.com. It's chock full of good insight on some hard-to-find hacking tricks. Good video demos as well.I had the pleasure of meeting Adrian when I keynoted the Louisville ISSA conference last month. Very nice and knowledgeable guy....

    Continue Reading...
  • 01 Oct 2008

    Cool site for tracking impending disasters

    During Hurricane Ike I came across a really neat site for tracking storms in the tropics and onto our soil here in the U.S. It's called Stormpulse. It has an awesome interface and lots of good information to help you plan and execute emergency procedures if your organization is going to be affected. Certainly a worthy tool in any DR/BC toolbox....

    Continue Reading...
  • 30 Sep 2008

    Free CISSP training

    For those of you looking into obtaining the CISSP certification, here's a link to some free CISSP exam prep offered up by SearchSecurity.com and taught by Shon Harris - a well-known expert in this area. It's not all you'll need in preparing for the exam but it's a good start and the price is right....

    Continue Reading...
  • 30 Sep 2008

    Job sites focused on MCPs

    If you're a Microsoft Certified Professional, here's a list of job sites tailored for you...Also be sure to check this link for previous posts of mine about security-related job sites....

    Continue Reading...