Draining the Swamp written by Patrick Foley
Distributed Security for Fun and Profit…
January 5, 2009 – 6:00 am
–
Global organizations often have challenges creating a comprehensive security program. Too much central control and the regions either feel ignored, so chafe at security cost allocations and pay only nominal attention to the program, causing great risk to the overall organization. Or they fill…
A Virtual Certainty…
December 16, 2008 – 6:00 am
–
Security professionals might be forgiven for having something of an inferiority complex as we are often the last ones invited to all the cool parties, and then once we show up, everyone thinks we’re buzzkills for spending our time looking for the emergency exits, checking the expiration date on…
Security and Audit – BFFLs? Maybe not, but…
November 21, 2008 – 6:00 am
–
…we may have lots of reasons to work together more closely. Maybe it is just the luck of the draw that at almost every employer for the last 15 years, I have been the one to manage our audit relationships, but I am certainly suspicious my good fortune is other than divinely inspired. …
Down the PCI Rabbit Hole in Search of Better Risk Measurements
November 6, 2008 – 6:00 am
–
Decision-making is often a product of risk assessment and prioritization. Currently, I have several deliverables pending for work, a carpentry project at home and this article to write. As I decide which to address, I quickly, and in many cases, unconsciously, analyze what I am placing at risk…
How Deep in DLP Are You?
October 15, 2008 – 6:00 am
–
While every security tool a vendor advertises to or demonstrates for you is purportedly the silver bullet that saves your organization from drowning in a virtual sea of hackers, rogues and spies, data-leakage protection – or prevention (DLP) is one for which many electrons have been slain to…
