Data breaches don’t cost anything–so here’s why they matter

What seems like a million years ago, when Sony Pictures got breached, some pundits were predicting that was the end of the company. I always thought that was hyperbole, but I have to admit I never went to the extreme of saying breaches are nearly harmless, which seems to be the current popular thinking.

Indeed, a financial analyst went on the Down the Security Rabbit Hole podcast and said breaches are an investment opportunity. Just buy the dip.

Read more

How to measure the effectiveness of a security program

On a recent episode of Down the Rabbit Hole, Rafal Los and James Jardine asked CISO-turned-CIO Joe Riesberg how he measures the effectiveness of a security program. He came up with five things, which are pretty much how we measure our effectiveness where I work too. That’s a pretty good indicator. Read more

The difference between how I eat and how Paula Deen cooks

I don’t pay a lot of attention to food, and certainly not to celebrity chefs. I don’t think the name Paula Deen would have meant anything to me a week ago. Most likely I’d have heard the name, but if you’d given me a multiple choice test, I probably would have gotten it wrong.

I know who she is now. Read more

Don’t follow Dvorak’s password advice

I mostly agree with Dvorak’s Permanence of Posting Online, but I take serious, serious issue with what he says in that piece about passwords.
Read more