Disclaimer: The opinions of the columnists are their own and not necessarily those of their employer.

Category Archives: General

Security Tidbits of Interest

– Did you know that Al-qaeda uses PGP? Analysts said that as-Sahab is outfitted with some of the best technology available. Editors and producers use ultralight Sony Vaio laptops and top-end video cameras. Files are protected using PGP, or Pretty Good Privacy, a virtually unbreakable form of…

Being a Government Security CISO: Life in the Fishbowl

– Information Security is Information Security, Right? It shouldn’t matter if the organization needing protection is a government agency operating in the public sector or a private enterprise, should it ? Well, technically, no. Essential security practices should be delivered for whichever…

Assessing your Organization’s Network Perimeter (pt. 2)

– Welcome once again to the risk rack. This time on the risk rack we will be continuing our review of how to assess your organization’s network perimeter. As a reminder the identified steps were: Step 1: Define the functions and purposes of your network perimeter. Step 2: Assess the technology…

Why Information Security Professionals Should Learn Texas Hold ‘em Poker

– “Mathematics and psychology.” That’s poker (including Texas Hold ‘em) according to the legendary poker player Mike Caro. That could also describe the field of information security. In this column, while I’ll show some of the overlap between Texas Hold ‘em Poker…

The Password Dilemema: Improving the Mundane

– The weaknesses of passwords used for authentication and authorization are well known. In fact, many security experts feel that using a password as the only means of accomplishing these goals constitute “worst practices.” As a result, some higher risk entities (banks, governments, etc.) are…