Top IT Security Bloggers
-
The Mandiant APT1 report made our industry stronger by encouraging -- if not forcing -- information sharing. By Nick Selby
-
Cloud Security - Expect Accelerate Deployments Due To Strong Moves By Providers To Improve Security
CSO OnlineForrester research has always identified security as a major impediment to broad scale implementation for cloud, regardless of the model, SaaS, PaaS, IaaS, the adoption rate has been slowed by security concerns. Cloud providers recognize this is an impediment to selling cloud services and in response are strengthening their security controls. -
Attacks from China: A survival guide
CSO OnlineChinese cyberattack activity is back in the news this morning, with new details emerging on new attacks. Here's a collection of stories to help infosec pros better understand the threat. -
Ten tweets with Gunter Ollmann
CSO Online
IOActive CTO Gunter Ollmann talks security philosophy, changes in the industry and his love for boutique delicatessens in 140 characters or less -
#FFSec: Infosec pros who bring value to Twitter
CSO OnlineFollow these names on Twitter. Together, they make cyberspace a more secure place. (copy and paste) -
B-Sides Boston is Saturday
CSO OnlineB-Sides has returned to Boston with a stellar keynote roster this weekend. -
5 questions with former DuPont CISO Larry Brock
CSO Online
In his 30+ years with DuPont, security veteran Larry Brock has seen many changes. Now the former CISO at DuPont, has now launched his own venture consulting on information security and intellectual property protection from insider and advanced cyber threats. -
Who is the man behind the mask
CSO OnlineKnown scars: Right front shoulder 2” Right forearm 3.2”
Tattoos: SASR on Left bicep
Nationality: Australian with Aboriginal descent – Family traceable to mid-1800’s
Mother’s Maiden Name: Brierly -
Times may change, but the CSO's song remains the same
CSO Online
I came across an old entry today on CSOonline.com. It is dated 2002. It's titled “The Top Five Concerns for a CSO” and lists what, at the time, were the five areas of focus for security leadership.
From the article: -
Leaving CSO, Heading to Akamai
CSO OnlineI wrote this in my personal blog yesterday, but am running it here as well for those who know my work exclusively through Salted Hash.
- 1
AusCERT 2013: Cloud-based scanner identifies new malware by its ancestry
- 2
AusCERT 2013: International cyberwar response more complex than geopolitical treaties: NATO CCD COE analyst
- 3
AusCERT 2013:Packetloop looks at the half-life of security information
- 4
AusCERT 2013: Kill the password, says Mozilla
- 5
AusCERT 2013: Companies unaware of IPv6 security risk even if they’re not using it
Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).
- Have an incident response plan.
- Pre-define your incident response team
- Define your approach: watch and learn or contain and recover.
- Pre-distribute call cards.
- Forensic and incident response data capture.
- Get your users on-side.
- Know how to report crimes and engage law enforcement.
- Practice makes perfect.
Warning: Tips for secure mobile holiday shopping
I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.









