Get the security geeks in the room and kick the lawyers out !!!

Posted in /etc/IT_security/news on October 21st, 2009 by Rick Zhong

Some advice from Heartland Payment CTO after the largest credit card data breach in history - Link from Bank Systems and Technology - http://www.banktech.com/blog/archives/2009/10/heartland_calls.html?cid=nl_bnk_daily

Heartland Calls for End-to-End Encryption, Cooperation to Prevent Data Breaches

Tags: , ,

A Pleasent Surprise from Microsoft Security Newsletter

Posted in /etc/IT_security/news, /opt/risk_management, /root/IT Management on October 20th, 2009 by Rick Zhong

In an era when newsletter from vendors are almost the equivalent of spam emails, I am pleasently surprised by the content of Microsoft Security Newsletter - at least for this issue volume 6, issue 10.

First of all it is of the right length, no chunky huge paragraph and with proper links - it is an absolute turn-off when you see something interesting and yet no links or even worse - the content is for restricted groups.  Next, related articles give the interested readers full picture of tools and their relevant usage - For example, BinScope is introduced in this newsletter together with a how-to article. (BinScope Binary Analyzer and Security Tip of the Month: Using BinScope Binary Analyzer to Improve Code Security ). In the Business Security session, Andreas Wuchner speaks out the exact thought in my mind ofWhat I Look for When Hiring IT Security Staff “. It is short, precise and very accurate summary of the reality in hiring of IT security staff.

This is the 2nd time in the week I am impressed by Microsoft (the first one is the Microsoft Security Development Lifecycle blog). Probably it’s time to get a copy of Windows 7 ..LOL

Tags: , ,