• 21 Jul 2011

    Thomas Paine knew his infosec

    Here's a great infosec quote from statesman Thomas Paine:"Our greatest enemies, the ones we must fight most often, are within."This applies to both malicious insiders and ourselves as each of us certainly tend to get in our own way when it comes to making things happen with security....

    Continue Reading...
  • 01 Jul 2011

    Get over yourself

    The late, great Richard Carlson once said:"Humility and inner peace go hand in hand. The less compelled you are to try to prove yourself to others, the easier it is to feel peaceful inside." I believe this theory explains why so many people in IT and information security are so stressed out. I'm also convinced that this concept is the basis for all the bad choices and negative behavior we've ...

    Continue Reading...
  • 27 Jun 2011

    The value of partial code scanning, now

    Check out my new piece on the business value of partial code scanning where I outline why it's better to start your source code analysis now instead of waiting around until certain milestones of your development projects are reached or your software applications are completed altogether.It's kind of funny and ironic that we humans are all about instant gratification, yet with information risk issues such as source code analysis, we ...

    Continue Reading...
  • 10 Jun 2011

    The best information security quote ever

    Thinking about all the security incident headlines over the past 30 days alone, this says it all:"We can evade reality but we cannot evade the consequences of evading reality." -Ayn Rand...

    Continue Reading...
  • 19 May 2011

    Not all experience is good

    As with golf, racing cars or whatever, just because you have "experience" doesn't mean you're on top of your game. I just came across a quote that sums this up nicely - especially for those of us in IT and information security:"Experience is valuable only if it's imbued with meaning from which one can draw salient conclusions. Otherwise, experience becomes imprisoning." -Barry McCaffrey...

    Continue Reading...
  • 12 May 2011

    Some tips for balancing work and play

    There's an old saying "Play as hard as you work" that I strive to live by. I've discovered that balancing work and personal time is one of the hardest - yet most important - things you can do as a human being. I found this to be doubly true after losing my mom to cancer last year and nearly losing my father to a heart attack this year.If you're looking ...

    Continue Reading...
  • 03 May 2011

    My security speaking engagement this week

    Today I'm prepping and practicing for my Predictive Security event with TechTarget and CDW in Los Angeles this week. Really psyched about the show and visiting LA - I've never been.How I feel reminds me of the following quote from Whit Hobbs:"Success is waking up in the morning and bounding out of bed because there's something out there that you love to do, that you believe in, that you're good ...

    Continue Reading...
  • 25 Apr 2011

    The positive side of infosec

    "Have you ever, even once, stopped to marvel at just how often things go right? It's amazing." -Richard CarlsonWith all of the smack talk and negative approaches so many of us (myself included) take regarding IT and information security, this'll make you realize that it's not all bad. I we could all benefit from stopping to smell the roses and seeing the bright side of our field every now and ...

    Continue Reading...
  • 19 Apr 2011

    Learning is a choice

    "If your intent is to learn, you almost always do learn." - Richard CarlsonLike when we see what we want to see, we learn what we want to learn. This is important for our careers in IT and infosec but also provides a great way for us to become better people....

    Continue Reading...
  • 12 Apr 2011

    Have no fear and be free

    "The whole secret of existence is to have no fear. Never fear what will become of you, depend on no one. Only the moment you reject all help are you freed." -BuddhaThis is great for personal power, personal responsibility and, of course, information security - just be careful with that "reject all help" bit. ;)...

    Continue Reading...