Stories by Bob Violino

Big Data Protects Intel's Info

By Bob Violino | 04 April, 2013 13:30

Security Business Intelligence (SBI) earned Intel top honors in the CSO40 awards, which recognize security projects that have delivered outstanding business value.

Getting to the (end) point

By Bob Violino | 29 January, 2013 22:22

Organizations sometimes rush to implement security solutions without taking the time to ensure that the products will work optimally in their environment, in hopes of dealing with immediate security shortfalls. But putting in the effort to meld new solutions with the existing infrastructure increases the likelihood of a successful deployment.

Unseen, all-out cyber war on the US has begun

By Bob Violino | 28 January, 2013 11:09

Security pros and government officials warn of a possible cyber 9/11 involving banks, utilities, other companies, or the Internet

The mobile game changer

By Bob Violino | 20 December, 2012 14:31

How smartphones and tablets are forcing CSOs to approach ID and access management differently

Lessons of HSPD-12

By Bob Violino | 19 December, 2012 15:11

Many federal government agencies are well into their efforts to comply with Homeland Security Presidential Directive 12 (HSPD-12), designed to improve identity management among the government entities and their main suppliers.

When in China, don't leave your laptop alone

By Bob Violino | 04 December, 2012 11:11

If you travel to China or Russia, assume government or industry spooks will steal your data and install spyware. Here's how to thwart them

Common language: IT and corporate security cooperation makes progress

By Bob Violino | 05 November, 2012 18:42

It's an old story: Different risk management functions operating in separate boxes, each oblivious to the other's existence. Security experts have been talking about the need for corporate and IT security to come together for what seems like an eternity. But real cooperation has emerged only in fits and starts.

Inside Intel, part 2: The future IT security workforce

By Bob Violino | 17 October, 2012 19:41

The future workforce will look somewhat different than the current workforce, according to Alan Ross, senior principal engineer at Intel.

Inside Intel, part 1: Evolution of IT security

By Bob Violino | 16 October, 2012 14:37

Like many other companies, processor manufacturer, Intel Corporation, is having to evolve its information security focus to meet the changes underway in the technology landscape—particularly with the rapid growth of mobile devices and applications and the rise in cloud computing services.

Drilling for disaster at LAX

By Bob Violino | 11 October, 2012 14:22

Los Angeles World Airports (LAWA), the department that oversees three airports in the LA area, recently implemented a business continuity and disaster recovery plan for the Los Angeles International Airport (LAX). As part of the effort, the organization conducted a tabletop exercise on what would happen if an earthquake struck LAX.

Forecast 2013: Setting a mobile risk management strategy

By Bob Violino | 24 September, 2012 14:07

If you're CIO at a large enterprise -- or a small one, for that matter -- chances are good that you're seeing a steady rise in the number of employees using smartphones and tablets at work.

Genomic Health: Protecting business in the cloud, public and private

By Bob Violino | 04 September, 2012 13:52

About five years ago Genomic Health began to introduce cloud-based business applications. Ken Stineman, senior director of enterprise architecture and security, quickly became aware of the security risks these apps posed.

What's next for GRC?

By Bob Violino | 22 August, 2012 19:24

Today's governance, risk management and compliance (GRC) software has useful features that can help organizations get a better handle on how they're managing risk, security and compliance issues.

What's next for GRC?

By Bob Violino | 22 August, 2012 19:24

Today's governance, risk management and compliance (GRC) software has useful features that can help organizations get a better handle on how they're managing risk, security and compliance issues.

GRC: Trying to take the bite out of risk

By Bob Violino | 22 August, 2012 19:18

These days, organizations are facing increasingly sophisticated information security attacks from multiple sources. At the same time, they're struggling to comply with a growing number of government and industry regulations, and they're facing pressure to put in place better corporate controls.

CSO Corporate Partners
  • Webroot
  • Trend Micro
  • NetIQ
rhs_login_lockGet exclusive access to CSO, invitation only events, reports & analysis.
CSO Directory

Identity & Access Management

Why choose NetIQ for Identity and Access Management

Security Awareness Tip

Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).


  1. Have an incident response plan.

  2. Pre-define your incident response team 

  3. Define your approach: watch and learn or contain and recover.

  4. Pre-distribute call cards.

  5. Forensic and incident response data capture.

  6. Get your users on-side.

  7. Know how to report crimes and engage law enforcement. 

  8. Practice makes perfect.

For the full breakdown on this article

Security ABC Guides

Warning: Tips for secure mobile holiday shopping

I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.