-
-
BlogInfoSec.com Sponsors
-
BlogInfoSec.com Partners
Category Archives: CSO/CISO Perspectives
Security in the Dark
December 6, 2011 – 6:00 am
–
I attended a roundtable recently at which someone mentioned that, in their experience, those familiar contractual requirements requesting third-party service providers to tell their customers about security breaches within a short time frame (within three hours, say) are often not conveyed to…
The Security of Fools
November 21, 2011 – 6:00 am
–
No, I’m NOT saying that security professionals are fools … far from it. But many of the folks whom they serve may well be overconfident in their judgments about security. Overconfidence in the face of undisputable evidence to the contrary is described in Daniel Kahneman’s article “The…
Will Cloud Security Drive You Insane?
October 17, 2011 – 6:00 am
–
First, the transparency … I have known Jim Reavis, co-founder of the Cloud Security Alliance (CSA), for a dozen years or so. He is a true visionary. He met with me before creating the CSA and asked me what I thought. I told him to go for it. He did and has had remarkable success [...] …
So-so SASO … So What?
September 26, 2011 – 6:00 am
–
A couple of days ago, I happened across Oracle CISO Mary Ann Davidson’s August 24, 2011 blog, “Those Who Can’t Do, Audit” at http://blogs.oracle.com/maryanndavidson/entry/those_who_can_t_do and began writing a column about Davidson’s blog. Then I was pointed to Veracode’s Chris…