Disclaimer: The opinions of the columnists are their own and not necessarily those of their employer.

The Weakest Link written by Allan Pomerantz

Allan Pomerantz

Allan Pomerantz is the Chief Information Security Officer for the Philadelphia Stock Exchange, the Nation’s oldest.

Allan is responsible for the creation and distribution of Information Security Policies approved by executive management. In addition, he conducts employee awareness and training programs which emphasize avoiding Social Engineering and Phishing Scams.

In addition, in conjunction with the various technical system administration units, he is responsible for developing and implementing PHLX’s Defense in Depth Strategy which involves hardware, software, policies, and education.

Allan holds the CISSP and CISM designations and is a member of ISSA and Infragard.

He is a graduate of Penn State University with an MBA from Drexel University.

Looking Through the Wrong End of the Telescope

– At this point in time most companies have done at least a reasonable job of keeping the bad guys out. They probably have a firewall, Anti-Virus, URL filtering and some sort of centralization and viewing capability, whether home grown scripts or a commercial product. Many also have implemented…

Save The Whales

– By now we all familiar with Phishing, which is the attempt to extract valuable information from an unsuspecting user via some form of social engineering which is usually done via E-Mail but can also be done via telephone (called Vishing.) In the case of an individual, the target is usually…

Our End Users: The Weakest Link

– Hackers and professional criminals are like most people; they want to accomplish their goal in the easiest way possible. As we have become better at implementing technical controls, such as hardening servers, more aggressive patching, and deployment of a vast array of security devices /…

Biography of Allan Pomerantz

– Allan Pomerantz is the Chief Information Security Officer for the Philadelphia Stock Exchange, the Nation’s oldest. Allan is responsible for the creation and distribution of Information Security Policies approved by executive management. In addition, he conducts employee awareness and training…