Chances are Someone is Trying to Steal Your Organization’s Information
March 29th, 2012
Chances are someone is trying to steal your organization’s information. Instead of expending all your effort in defensive posture controls, there are ways to actively seek out and disrupt attempts to steal your organization’s information. This is called counter intelligence and the exploits of the good old cold warrior, George Smiley, should be your hero. [...]
Using Data to Secure Data – Observations from the RSA Conference
March 5th, 2012
It seems that each year I attend the RSA Security Conference there is always a set of theme words permeating the conference. Some of the more recent ones: borderless, cloud, mobile, compliance, etc. While I was there, a new one popped up that is interesting: big data. Big Data has been gaining momentum over the past few [...]
Data Breach Trends in the Financial Sector
February 23rd, 2012
Financial institutions are, it seems, doing a better job at protecting customer data than most industries. This is the conclusion one reaches when looking at the latest data in the Chronology of Data Breaches from the Privacy Rights Clearinghouse. Overall, the CDB has 2929 breaches in the 2005–2012 timeframe, involving 544,591,013 records (yup, more than [...]
Two Approaches to Managing Mobile Devices
February 6th, 2012
There is no question we have entered the era of always connected mobile devices. Smart phones, iPads, and Android devices have changed the way people access information. Last month, I discussed why denying the use of personal mobile devices isn’t a realistic view. Looking to the future, here are some considerations on how to incorporate [...]
Using Cybersecurity as a Competitive Advantage: Part 3 of 3
January 30th, 2012
This is part three in a series of three on data privacy. Read Pat’s first interview here and second interview here. Data privacy is in the spotlight as the January 28 Data Privacy Day approaches. In this first two parts of this series, we focused on the challenges and consequences of poor data security. Now, [...]
Exploring 2012 Data Privacy Threats: Part 2 of 3
January 27th, 2012
This is part two in a series of three on data privacy. Read Pat’s first interview here. Are we desensitized to hack attacks despite the headline-making stories featuring Anonymous last year? What can we expect in 2012 on the data privacy threat front? And where are the weakest links in the enterprise? Veteran technology journalist [...]
Your Data Privacy Day: 1 of 3
January 16th, 2012
How Private Is Your Data, Really? How private is your data? If you are like most people—and even many corporations—you can’t offer a solid answer. Yet one person’s lack of knowledge about data privacy can send a ripple effect through the world as malicious hackers work to steal valuable information from individuals, companies and governments. [...]
Illinois’ New Data Protection Law
August 24th, 2011
News today, courtesy of Brendon Tavelli at Proskauer’s Privacy Law blog via the always excellent Office of Inadequate Security, of a new data breach notification bill just signed by Governor Pat Quinn of Illinois. Interesting to me both personally (Go Illini!!) and professionally, this bill (HB 3025) amends Illinois Public Act 097-0483 (the Personal Information Protection [...]
USBs: Unsafe at Any Speed?
August 12th, 2011
I always enjoy hearing about our venerable events in the popular press – sometimes they’re yuk-inducing, like this bit on Marketplace about their reporter asking about getting WiFi at Black Hat 2011 (see here or listen here for the whole piece). And although I did not attend, I’ve been trying to catch up on some [...]
Social App Security – An Oxymoron?
October 18th, 2010
The recent Wall Street Journal investigation on the Facebook privacy breach begs a fundamental question: Can a “social application” be secure? This is a question bigger than just Facebook. Popular mobile communications platforms such as Apple’s iOS and Google’s Android have also struggled with this as of late. Here is the core conundrum – platform [...]





FREE Scanner
Free eBook &
Over 48% of IT Directors say that mobile devices represent the greatest network security threat.



