• 12 Nov 2008

    Think computer security is not a business issue – just ask the FBI

    Here's an interesting tidbit from the Atlanta InfraGard's CounterIntelligence Working Group web site reminding us that information security IS a business problem. Too many executives think this kind of stuff won't happen to them:"The Issue … Does your company have products or technology that someone might want to steal from you? ... If a new competitor suddenly sprang up in the marketplace with exact copies of your products and was ...

    Continue Reading...
  • 29 Oct 2008

    Only 5 more days until security budget increases are locked in!

    Come Tuesday - election day - maybe you can finally get the money you richly deserve for your information security initiatives. It's a new way of thinking - a new way of life for us here in the U.S. - something we information security professionals can adopt and integrate into our daily work.Here's the mindset of the Neue Regel...follow closely and you'll get that budget increase you deserve:First of all, ...

    Continue Reading...
  • 23 Oct 2008

    Huh…most data breaches are preventable??

    You don't say!According to NewsFactor, 87 percent could have been prevented. I would've figured around 99-100%.It's a choice folks. Like Dr. Phil says: You choose the behavior, you choose the consequence....

    Continue Reading...
  • 20 Oct 2008

    Question posed to me about IT operations not being on board with security

    Here's an interesting question someone asked me recently regarding some in-fighting about security along with my brief response on how to fix the problem. I see this ALL the time!:"I work in a company as the sole information security analyst. My job is to identify risks, set policy, and audit our IT environment against the policies I wrote. I am currently working with IT operations staff on mitigating risks based ...

    Continue Reading...
  • 02 Oct 2008

    The gaping hole that most organizations have

    Certain organizations have an incident response plan...And many people in management know that one needs to be in place. Of those that do have a plan, I have YET to see one that has a public relations component. You know those pesky news ferrets that will no doubt be calling, emailing, and worse shoving a microphone in your face when a breach occurs??Well, here's a good little piece on this ...

    Continue Reading...
  • 01 Oct 2008

    Wonder how much Cisco spent on this study…

    Alert, Alert! Cisco has finally found the cause of information security problems! Apparently *employees* are the culprit. So...humans are the root cause of all this stuff we live and breath every day after all. Oh and apparently we need to focus more on awareness...You think??I believe this was a case of some Cisco employees needing to do some busy work to justify their existence in the company. Amazing use of ...

    Continue Reading...
  • 26 Sep 2008

    Point about users & malware I’ve been trying to get across

    I feel as if my opinion on a malware-related security vulnerability I've been pointing out for years has been validated. By actual research!Here's the deal: It's when users get pop-ups/dialog boxes from web sites, etc....All they want to do is get rid of it, right? It's human nature. They don't care which option they click or what the outcome may be. I'm guilty of doing the same thing. It's something ...

    Continue Reading...
  • 25 Sep 2008

    How about a bailout of the information security industry!?

    While our government is on the bandwagon of handing out billions of our dollars to the financial industry and, more recently, the auto industry it made me think - what the heck - might as well throw in a few billion or so in support of our industry, right?? After all, it'd be money well-spent on our critical infrastructure here in the U.S.Here's what could be done to redistribute our ...

    Continue Reading...
  • 23 Sep 2008

    Has Sarbanes-Oxley failed us?

    ....no, surely not!? But then again...Those of us in IT and information security know all about Sarbanes Oxley. You know the Public Company Accounting Reform and Investor Protection Act of 2002 that our Imperial Federal Government put in place back in 2002...?That was then...now look at the mess we're in. Lehman Brothers, AIG, Fannie Mae, Freddie Mac - all living proof that Sarbanes Oxley is a failed piece of reactive ...

    Continue Reading...
  • 17 Sep 2008

    Just throw some more money at the problem – that’ll fix it

    Yesterday, the Cobb County government school system - the county where I make 99% of my retail purchases - had their wish fulfilled when voters passed to renew the current special purpose local option sales tax (SPLOST). This in a county where the government schools are wrought with fierce politics and wasteful spending. I know not only because of the stories I read but also because I've seen it first ...

    Continue Reading...