Content Vault : Security | Recommended Content
CIO Leadership, Security

The cyber attack kill chain defense

How what the Air Force does applies to cyber security

Blog-post by Jim Ricotta, Tue, 04/09/2013 - 14:16
Jim Ricotta

The “Kill Chain” is a traditional warfare term most often used by the US Air Force in defining the command and control process for targeting and destroying enemy forces in order to make it most difficult for the enemy to continue in battle.  A well-known and successful execution of this strategy was in the initial air attacks on Iraq during Operation Desert Storm, which targeted command bases and communications networks. The result was that cut-off ground units in the field, lacking orders and control, quickly lost the will to fight.

0
   
2 2

CIO Leadership, Security

What in the world are you thinking about security?

Discussion on RSA Conference keynotes @ SFO - Feb 25 to Mar 1st 2013

Blog-post by E.G. Nadhan,
HP Blogger
, Thu, 02/21/2013 - 23:36
1
   
2 2

CIO Leadership, Security

Lifting the fog of war on insider and advanced persistent threats to data

Chief security officers the new battlefield commanders

Blog-post by Jim Ricotta, Wed, 02/13/2013 - 20:54
Jim Ricotta

In the fog of war, intelligence is limited, ever subject to the enemy's feints and disinformation, doomed to deliver a murky picture that can rarely provide, from the inevitably large amounts of diverse data, a cogent view capable of leading to better decisions and final victory.

1
   
2 2

Business Issues, CIO Leadership, Technology, Security

Top 10 Security and IT Governance Articles of the Year

Blog-post by Chiranjeev Bordoloi, Tue, 12/25/2012 - 11:18

 I want to present you with a special “this week’s best resources”. Today, I won’t share articles, interviews or webinars that I have compiled from the Wild Web. Instead I am sharing the articles you, my readers, found the most interesting and useful throughout 2012.

It’s been almost a year since I started this blog and here are the most read articles of 2012:

0
   
1 1

Business Issues, CIO Leadership, Technology, Security

How to Align Security With Strategic Business Objectives

Blog-post by Chiranjeev Bordoloi, Wed, 12/19/2012 - 22:29

For a CIO/CISO to provide leadership, he/she needs a clear vision of the enterprise’s security posture and the ability to communicate its relevance to the board of directors. CISOs must ensure that every security project maps back to the company’s strategic business objectives. They have to be rigorous when making decisions about the information security investments they have to authorize and support. Enterprise security developments require superior planning, communication and leadership abilities.

Essential features of information security assets and activities:

0
   
3 3
Tags: IT security

Technology, Security

Cybersecurity Act of 2012 and the Cloud

Information security a top government priority

Blog-post by Rick Blaisdell, Tue, 12/04/2012 - 13:26
RickBlaisdell

Speaking of Laws and Regulations Governing the Cloud Computing Environment, we cannot ignore the latest cybersecurity bills proposed this year. There have been many cyber bills proposed, but none was as important as the Cybersecurity Act of 2012, supported by the Obama Administration. Cybersecurity is a top administration priority for Obama’s second term.

0
   
2 2

Business Issues, CIO Leadership, Technology, Security

CIOs, CISOs, CSOs, CROs CPOs – Roles and Responsibilities

Blog-post by Chiranjeev Bordoloi, Wed, 11/28/2012 - 12:55

The Carnegie Mellon Governance of Enterprise Security: CyLab 2012 reportrevealed that less than two-thirds of the respondents’ organizations have full-time personnel in the key roles for privacy and security (CISO/CSO, CPO, CRO). Respondents across all industry sectors are not assigning key privacy and security responsibilities to defined executive roles, such as CISO/CSO, CPO, or CSO, with reporting lines that avoid segregation of duties issues.

2
   
1 1

Business Issues, CIO Leadership, Technology, Security

CEOs – How does your company protect the information it uses? Do you know?

Blog-post by Chiranjeev Bordoloi, Tue, 11/13/2012 - 14:57

Today corporate data is at a higher risk of theft than ever before. C-level officers have the duty to protect the digital assets of their organizations. Moreover, laws and regulations impose specific privacy and cybersecurity obligations on companies. Cybersecurity requires active oversight by boards and senior executives.

2
   
1 1

Business Issues, CIO Leadership, Technology, Security

5 Benefits of Proper IT Security Governance

Blog-post by Chiranjeev Bordoloi, Sun, 11/11/2012 - 07:03

In today’s economic, political, and social environment, customers are demanding the security of their information, as the concern about privacy and identity theft rises. Business partners, suppliers, and vendors are requiring security from one another, especially when they provide mutual network and information access. National and international regulators are asking enterprises to prove that they obey privacy laws and implement high-security measures.

0
   
1 1