I got my week’s issue of Time magazine in the mail today, and lo-and-behold the cover and feature story was about Twitter!
Archive for the ‘Training & awareness’ Category
Great InfoSec and Privacy Info and Resources This Week On Twitter
Friday, June 5th, 2009Not Providing Training and Awareness Is The Dumbest Idea For Information Security
Thursday, June 4th, 2009As time goes on, and more and more information security incidents and privacy breaches occur, I continue to hear otherwise smart people say silly and completely wrong statements about the need (or lack of) for information security and privacy training and awareness!
Common InfoSec & Privacy Training Mistakes
Monday, June 1st, 2009I’ve been reviewing some of the information security and privacy training and awareness content for some organizations; some large and some small. Most of the training is ineffective…
Insider Threat: Horrible Tragedy Highlights Need For Policies & Training
Wednesday, May 27th, 2009I got the June 1 issue of Newsweek today, and something that’s bothered me ever since I first heard about it was on page 4…
HIPAA, HITECH Act and Disposal Problems
Thursday, May 21st, 2009Here’s yet another incident that provides very good lessons that could be incorporated into information security and privacy training sessions as a case study, particularly for HIPAA compliance as well as secure disposal training…
The World’s Largest (and BEST!) Cyber Defense Competition for Teens…In Ames Iowa!
Wednesday, May 20th, 2009Last month Iowa State University, in Ames, held a unique type of IT Olympics for teens…
Effectively Explaining the Purpose of Information Classification to Employees
Tuesday, May 19th, 2009The topic for my Q2 2009 issue of Protecting Information was helping employees to understand why different types of information need different levels of security. Yes, this is information classification, but I describe it in a way that employees of all levels and responsibilities throughout an organization can understand, here’s how…
Secure360 Starts Tomorrow!
Monday, May 11th, 2009Regulatory Requirements for Training and Awareness
Thursday, May 7th, 2009Today I had a great conversation with a CISO about the regulatory and legal requirements for organizations to provide information security and privacy training and awareness activities…
Understanding Data Protection from 4 Critical Perspectives
Tuesday, May 5th, 2009Today I gave a webcast (27 minutes) about “Understanding Data Protection from 4 Critical Perspectives” and it is now available online through this link…