2 Things In Computing History That Could Have Improved Information Security and Privacy

April 17th, 2009

This past Wednesday I gave a session at Infosec09 in Omaha, Nebraska.
What a great event and venue! If you get a chance to attend next year, I highly encourage you to do so.

Read the rest of this entry »

“Secure Your ID Day” is April 18

April 14th, 2009

I’m in Omaha to speak tomorrow at the Infotec09 conference and I heard on the local news that “Secure Your ID Day” is April 18…

Read the rest of this entry »

“Secure Your ID Day” is April 18

April 14th, 2009

I’m in Omaha to speak tomorrow at the Infotec09 conference and I heard on the local news that “Secure Your ID Day” is April 18…

Read the rest of this entry »

Pointers to interesting & useful information security, privacy & compliance info

April 13th, 2009

I’ve been using Twitter for a couple of months now. I never saw the value of using Twitter before this time, and in fact had a completely different view of what it was “all about” until I actually started using it. I’m so glad I did! I’ve found it to be a very valuable communications tool, and I’ve made some wonderful new contacts and friends, from all over the world, through using it.

Read the rest of this entry »

You aren’t in Kansas anymore, ToTo…you’re in virtual Kansas!

April 9th, 2009

Oh; and, by the way, what the heck are virtual worlds? Aren’t they something that only kids use?

Read the rest of this entry »

Measuring The Effectiveness of Information Security & Privacy Awareness & Training

April 8th, 2009

I’m a longtime advocate of creating a wide range of metrics to determine the effectiveness of the various components of information security, privacy and compliance programs.

Read the rest of this entry »

Privacy Breach Lesson: Encrypt Mobile Digital PII!

April 6th, 2009

Once more, here is an example of how carelessness and/or a mistake leads to a privacy breach…

Read the rest of this entry »

What Corporate Business Leaders Need To Know About Data Protection

April 3rd, 2009

The first chapter of my new ebook, “Understanding Data Protection from Four Critical Perspectives” has been published!
The first chapter is “What Corporate Business Leaders Need To Know About Data Protection” and is written to an audience of CEOs and other executive business leaders who may not have an IT or information security background. I wrote this chapter for information security and privacy practitioners and officers to be able to give to their executive business leaders to help them understand data protection and compliance better, in addition to helping to get them to sponsor data protection efforts.
Here’s the introduction to the chapter, which also provides an overview of the book:

Read the rest of this entry »

Pros & Cons Of Surveillance Cameras For Compliance

April 2nd, 2009

We had a very interesting discussion on Twitter this morning about the practice of automatically photographing license plates to use for parking, tickets, etc…

Read the rest of this entry »

Ongoing Awareness Communications and Regular Training Are Necessary For Effective Information Security & Privacy Programs

April 1st, 2009

Scott Wright over at Streetwise Security Zone graciously invited me to do a podcast interview with him to discuss information security, privacy and compliance training and awareness issues. In the last half of February I had the pleasure of taking him up on his invitation!
You can hear the full podcast here.
Here are the notes Scott compiled about our discussion topics:

Read the rest of this entry »