July 17th, 2008 by rybolov
If you're new here and would like to see more of what I'm saying, you may want to subscribe to my RSS feed or have a look at my papers and presentations page for downloads of stuff that you can share or "borrow heavily from". You also might find my guidelines for posting comments interesting, especially if you're a government employee. Thanks for visiting and happy hacking!
Hot on the heels of Security Assessments as Fraud, Waste, and Abuse comes this heartwarming lolcat.

Posted in IKANHAZFIZMA |
No Comments »
July 10th, 2008 by rybolov
With as much overengineering that people do for low-criticality systems, I’m surprised nobody’s mentioned this idea yet for high-criticality data: snipers on the roof. Now that “the cat’s out of the bag”, I figure this will be in the next 800-53 revision.

Posted in IKANHAZFIZMA |
1 Comment »
June 26th, 2008 by rybolov
Truth be told, most people hate POA&Ms because they’re more work for you to do. Deep down inside, though, they’re a reason to get funding to fix things.

Posted in IKANHAZFIZMA |
1 Comment »
June 19th, 2008 by rybolov
I’m surprised they don’t issue flak jackets to incoming CISOs, what with as many people taking shots at them.

Posted in IKANHAZFIZMA |
2 Comments »
June 13th, 2008 by rybolov
Don’t you just love those technical security people who always need more security tools even though it doesn’t fit in with what everybody else is doing?

Posted in IKANHAZFIZMA |
3 Comments »
June 12th, 2008 by rybolov
Credit to Dan on this one…

Posted in IKANHAZFIZMA |
3 Comments »
June 5th, 2008 by rybolov
Ah yes, my favorite subject to bash: compliance. Better comply or GAO will report you. =)

Posted in IKANHAZFIZMA |
No Comments »