My @ISACA column was published today. Read it here. Edited: I realized they edited the full submission I made (I could tell because it sounded a little off from what I recalled). Below is the full post: Depending on your point of view, risk management is either a very easy or a terrifically difficultContinue reading “Risk Response Requires Critical Thinking”
Category Archives: Risk
I want what they’re having
When consulting on a security issue, one of the questions that makes me grind my teeth more than any other is some variation of, “What’re our competitors doing?” My initial reaction is always, “Who cares?” Its really just a useless way to think about security and risk. In my experience, no one asks this question because they areContinue reading “I want what they’re having”
Negligence and Compliance
Compliance is out of control. Its pervasive in our society now and there is no going back. Allow me to explain. My kid attends pre-school. They go outside daily to play, so we were asked to provide some sunblock. Makes sense, our family is pale so we are used to that routine. We brought itContinue reading “Negligence and Compliance”
Open Group Risk Mgmt Podcast
I participated in a panel discussion podcast for the Open Group during their recent conference in Newport Beach.