JOURNAL ARTICLE -
Does risk management make sense? Experts Bruce Schneier and Marcus Ranum debate whether risk management is an appropriate strategic direction for information security professionals to follow.
Posted: October 14, 2008 | Published: October 1, 2008
JOURNAL ARTICLE -
Read what security people have to say. They want to be heard. They want to talk to the CIO, whisper in the CFO's ear, croon to the board, and scream at users. Problem is: an appropriate forum isn't always available. This article makes one available.
Posted: October 14, 2008 | Published: October 1, 2008
JOURNAL ARTICLE -
Chris Nickerson is your worst nightmare. He's the guy you never see coming, the one who can slip into your data center, install malware on any server he chooses and ease out without so much as a shadow on your security cameras.
Posted: October 14, 2008 | Published: October 1, 2008
JOURNAL ARTICLE -
Read this interview to learn more about Bill Jiminez, systems architect at the University of the Pacific, and how he has to balance security with the desire of faculty and students for openness.
Posted: September 15, 2008 | Published: September 1, 2008
JOURNAL ARTICLE -
Read this article to learn more about how governance, risk and compliance tools over-promise, and how organizations need to streamline and break away from their siloed approaches.
Posted: September 11, 2008 | Published: September 1, 2008
JOURNAL ARTICLE -
Three organizations reveal how they use a combination of frameworks such as COBIT or ISO 27001 along with GRC tools to satisfy overlapping industry and federal regulatory demands.
Posted: September 11, 2008 | Published: September 1, 2008
JOURNAL ARTICLE -
This journal article explaings how information flows through business processes in an orderly fashion and that security must flow right along with it.
Posted: July 25, 2008 | Published: July 1, 2008
JOURNAL ARTICLE -
Information security has evolved in the past 10 years from a siloed, uber-secret endeavor to an accepted enterprise business practice.
Posted: July 24, 2008 | Published: July 1, 2008
JOURNAL ARTICLE -
There may not be a job in corporate America that requires a more diverse skill set than that of a chief information security officer. Read this to become a reall know-it-all.
Posted: July 24, 2008 | Published: July 1, 2008
JOURNAL ARTICLE -
In the four years since it was founded, the Jericho Forum has promoted a new approach to information security, one that takes into account that traditional hard boundaries between the company and the rest of the world are fast dissolving.
Posted: July 24, 2008 | Published: July 1, 2008
JOURNAL ARTICLE -
Shutting down unneeded services, ports and accounts makes Windows Server 2003 tough to beat.
Posted: July 24, 2008 | Published: July 1, 2008
JOURNAL ARTICLE -
Even security-minded organizations can trip up on common misconceptions that lead to breaches and bad publicity.
Posted: April 13, 2008 | Published: April 1, 2008