• 16 Aug 2012

    You can’t buy security for $1, but some people will fall for it

    I recently deposited a check at a giant monster mega bank that's continually trying to sell me new services and the teller asked: "Would you like to buy identity theft protection for just $1 today?"Wow, really...so you're saying my personal information will be safe and secure for a mere $1...!? Amazing...but no thanks. Sadly, many in management are like the average consumer: they just don't realize what it takes to ...

    Continue Reading...
  • 20 Jun 2011

    I’m a speaker at the Gartner Infosec show this week

    For those of you who happen to be attending the Gartner Security and Risk Management Summit in DC this week, I'd love it if you could check out my session or at least stop by to say hello. I'll be serving as a panelist on mobile security at the following session:Protect Your Identity, Mobile PC and DataSession Code SPS13 - Potomac Ballroom 19:30-10:30amCheers!...

    Continue Reading...
  • 14 Feb 2010

    Great tool for seeking out sensitive info on your network

    One of the greatest risks in business today is the issue of unstructured information scattered about the network waiting to be misused and abused by rogue insiders and other outsiders that have gained "internal" access.Reality has shown us that we absolutely cannot protect what we don't acknowledge. The best way to minimize this risk is to search your network far and wide for PII and other sensitive business information you ...

    Continue Reading...
  • 17 Jul 2009

    A way to keep the RF in your RFID

    In case you're as concerned as I am about this, we now have a way to keep our RFID-tagged passports and driver's license secure. Just another public service announcement.......

    Continue Reading...
  • 17 Jul 2009

    SSNs a thing of the past?

    You may have already heard about this (I just got around to reading it). It's about how researchers at Carnegie Mellon have reverse engineered the Social Security Number assignment scheme. With just the birth date and state of birth SSNs can be cracked.Yet another reason to limit what you put on Facebook and other social sites...and a good reason to freeze your credit.Perhaps each of us can have a SSN ...

    Continue Reading...
  • 23 Feb 2009

    Want to know what a breach is going to cost?

    When writing a HIPAA-related whitepaper last week for the fine folks at Realtimepublishers.com (TONS of free papers and books on IT & security) I came across two good sites for calculating the cost of a data breach...VERY enlightening numbers from tools that have finally come of age. Keep these tools in mind when you're selling security and compliance to management (I know, it's sad you even have to): Becky Herold's ...

    Continue Reading...
  • 30 Dec 2008

    Interesting solution to the new Red Flags requirements

    I can't vouch for the quality of this offering I recently came across it but it does look interesting. It's called CompliancePal and it helps businesses automate/manage the requirements of the new FTC Red Flags Rules that are intended to help fix the problem we have with identity theft here in the U.S.Heaven knows business managers need help taking the pain out of the compliance process wherever they can!...

    Continue Reading...
  • 11 Dec 2008

    Let this be a reminder to keep your online passwords in check

    While you're shopping on Amazon.com, eBay, and elsewhere this fine holiday season, let Mike Rothman's dilemma be a reminder that we all need to take our online passwords seriously. So, keep them strong, keep them unique from one another, keep them to yourself, and (most importantly) keep them in mind. It's that long lost account that can get you....

    Continue Reading...
  • 27 May 2008

    Serves him right?

    This is somewhat old news from last week but I've had it on my to-post list and just had to say something about it. Did you hear about the founder/CEO of LifeLock, Todd Davis? He's the guy with all the radio ads who gives away his social security number to help prove his fraud-prevention service is secure. Well, apparently someone duped him. Huh, you don't say!?Every single time I heard ...

    Continue Reading...