<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Network View &#187; rsa</title>
	<atom:link href="http://www.anuesystems.com/blog/tag/rsa/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.anuesystems.com/blog</link>
	<description></description>
	<lastBuildDate>Thu, 15 Jul 2010 15:30:09 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>RSA 2010: A look inside the expo</title>
		<link>http://www.anuesystems.com/blog/2010/03/03/rsa-2010-expo/</link>
		<comments>http://www.anuesystems.com/blog/2010/03/03/rsa-2010-expo/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 17:14:31 +0000</pubDate>
		<dc:creator>Tommy P. Landry</dc:creator>
				<category><![CDATA[Anue Systems]]></category>
		<category><![CDATA[Infrastructure Security]]></category>
		<category><![CDATA[Monitoring Optimization]]></category>
		<category><![CDATA[Network Monitoring]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[Network Testing]]></category>
		<category><![CDATA[Tool Aggregation]]></category>
		<category><![CDATA[data center]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[#RSAC]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[moscone]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[rsa conference]]></category>
		<category><![CDATA[san francisco]]></category>
		<category><![CDATA[video]]></category>

		<guid isPermaLink="false">http://www.anuesystems.com/blog/?p=607</guid>
		<description><![CDATA[I&#8217;m blogging this from the hotel room near Union Square, and so far, RSA has been a lot of fun. Yesterday I took a few minutes to take some [very raw] video footage of the Expo to share with those of you who were unable to attend the show. Please excuse the audio quality; as [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m blogging this from the hotel room near Union Square, and so far, RSA has been a lot of fun. Yesterday I took a few minutes to take some [very raw] video footage of the Expo to share with those of you who were unable to attend the show. Please excuse the audio quality; as you know, trade shows come standard with built-in white noise.</p>
<p>For those of you who did make it to the show, I concluded the video by showing where you can go to find Anue Systems in Booth #329. If you are planning to be here today or tomorrow, please stop by and introduce yourself to me or one of my esteemed colleagues.</p>
<p>With that said, enjoy our video:<br />
<object width="425" height="344"><param name="movie" value="http://www.youtube.com/v/VT-1zBmlDg4&#038;hl=en&#038;fs=1"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/VT-1zBmlDg4&#038;hl=en&#038;fs=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"></embed></object></p>
<p class="bookmark-me">
    <script type="text/javascript">
	    yahooBuzzArticleHeadline = "RSA 2010: A look inside the expo";
	    yahooBuzzArticleId = "http://www.anuesystems.com/blog/2010/03/03/rsa-2010-expo/";
    </script>
    <script type="text/javascript"
        src="http://d.yimg.com/ds/badge2.js"
        badgetype="logo">
    </script>    
    <a title="technorati.com" href="http://www.technorati.com/faves?add=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/technorati.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="del.icio.us" href="http://del.icio.us/post?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;title=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/delicious.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="stumbleupon.com" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;title=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/stumbleupon.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="digg.com" href="http://digg.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;title=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/digg.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.facebook.com" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;t=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/facebook.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="bookmarks.yahoo.com" href="http://bookmarks.yahoo.com/toolbar/savebm?opener=tb&amp;u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoo.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.google.com" href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;title=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/google.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="furl.com" href="http://www.furl.net/storeIt.jsp?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;t=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/furl.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="reddit.com" href="http://reddit.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;title=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/reddit.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="propeller.com" href="http://www.propeller.com/submit/?U=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;T=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/propeller.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="windowslive.com" href="https://favorites.live.com/quickadd.aspx?mkt=en-us&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/windowslive.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="myweb2.search.yahoo.com" href="http://myweb2.search.yahoo.com/myresults/bookmarklet?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoomyweb.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="linkedin.com" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;title=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/linkedin.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="twitthis.com" href="http://twitthis.com/twit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2010%2F03%2F03%2Frsa-2010-expo%2F&amp;title=RSA+2010%3A+A+look+inside+the+expo"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/twitter.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.anuesystems.com/blog/2010/03/03/rsa-2010-expo/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Pros on Twitter (SPoT): Andy Willingham/@AndyWillingham</title>
		<link>http://www.anuesystems.com/blog/2009/09/09/security-pros-on-twitter-spot-andy-willingham/</link>
		<comments>http://www.anuesystems.com/blog/2009/09/09/security-pros-on-twitter-spot-andy-willingham/#comments</comments>
		<pubDate>Wed, 09 Sep 2009 16:24:59 +0000</pubDate>
		<dc:creator>Tommy P. Landry</dc:creator>
				<category><![CDATA[Infrastructure Security]]></category>
		<category><![CDATA[Integrity Monitoring]]></category>
		<category><![CDATA[Network Monitoring]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[@andywillingham]]></category>
		<category><![CDATA[Andy ITGuy]]></category>
		<category><![CDATA[andy willingham]]></category>
		<category><![CDATA[Canadian]]></category>
		<category><![CDATA[change control]]></category>
		<category><![CDATA[dc 404]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[FUD]]></category>
		<category><![CDATA[information security officer]]></category>
		<category><![CDATA[infragard]]></category>
		<category><![CDATA[issa]]></category>
		<category><![CDATA[LinkedIn]]></category>
		<category><![CDATA[michael santarcangello]]></category>
		<category><![CDATA[naisg]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[security catalyst]]></category>
		<category><![CDATA[the cloud]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.anuesystems.com/blog/?p=335</guid>
		<description><![CDATA[This week we look to another talented Security Pro, Mr. Andy Willingham. In his day gig, Andy serves as Information Security Officer for a Financial Services Holding Company, a role he evolved into from his extensive hands-on experience with Administrating the network. In an effort to establish and evangelize his security objectives, Andy is quite active on social media, and he also keeps his own blog titled Andy ITGuy; The voice of reason in a world of FUD. His blog highlights key events in security, latest news and developments, and his take on select topics of interest. We recommend you give a look to it to hear some of the important commentary Andy has available for your reading enjoyment.]]></description>
			<content:encoded><![CDATA[<p>This week we look to another talented Security Pro, Mr. Andy Willingham. In his day gig, Andy serves as Information Security Officer for a Financial Services Holding Company, a role he evolved into from his extensive hands-on experience with Administrating the network. In an effort to establish and evangelize his security objectives, Andy is quite active on social media, and he also keeps his own blog titled <a title="Blog: Andy ITGuy" href="http://www.andyitguy.com/blog/" target="_blank">Andy ITGuy; The voice of reason in a world of FUD</a>. His blog highlights key events in security, latest news and developments, and his take on select topics of interest. We recommend you give a look to it to hear some of the important commentary Andy has available for your reading enjoyment.</p>
<div class="wp-caption alignleft" style="width: 228px"><img class="       " title="SPoT: Andy Willingham / @andywillingham" src="http://www.anuesystems.com/blog/P4300562.JPG" alt="SPoT: Andy Willingham / @andywillingham" width="218" height="394" /><p class="wp-caption-text">SPoT: Andy Willingham / @andywillingham</p></div>
<p><strong>Real Name: </strong>Andy Willingham<br />
<strong>Twitter Handle:</strong> <a title="Twitter: Andy Willingham" href="http://twitter.com/andywillingham" target="_blank">@andywillingham</a><br />
<strong>Top 3 Social Media/Networking Sites: </strong><br />
<a title="LinkedIn" href="http://www.linkedin.com/" target="_blank">Linkedin</a>, <a title="Twitter" href="http://twitter.com/" target="_blank">Twitter</a>, <a title="Facebook" href="http://www.facebook.com" target="_blank">Facebook</a></p>
<p><em><strong>1. In which area(s) of security are you most involved? </strong></em><br />
I started out in Network Security but have focused mostly on program development, regulatory compliance, and architecture for the last few years.</p>
<p><em><strong>2. What security topics will be the most important in the next 18 months? Why? </strong></em><br />
I think we really need to focus on user education, reclaiming the desktop, social media and “The Cloud”. The first two will give us the biggest bang for our buck, and the last two have to be tamed before they get too far out of hand. They are coming fast and furious, and we can’t stop them, so we’d better learn how to secure them.</p>
<p><em><strong>3. Biggest Pet Peeve: Name one thing about Network Security that you wish business stakeholders would understand and why.</strong></em><br />
We have got to start involving security in the beginning stages of projects. I can’t tell you how many times I have found out about something in a Change Control meeting when the business was trying to get approval to go live with something. They had been working on it for months, and no one ever said “Hey, I wonder if Security would have any concerns about what we’re doing?”. It only hurts them in the long run, because they end up getting delayed on launch, or if someone with enough clout “insists” that it still go live, they end up spending lots of time and money fixing things that could have been prevented. It looks bad to their customers because of all the down time and bad features.<br />
<em><strong><br />
4. Tell us why you became so active on Twitter and any other important social media outlets. What value are you getting? </strong></em><br />
I’ve spent much of my career in smaller companies with limited tech staff, and there have been lots of times when I needed someone to bounce an idea or question off of, but the only option that I had was an online forum. Not that there is anything wrong with that, but you are taking a chance that 1) someone will know the answer and 2) that person will actually check the forums and see your question, which can often take several days. With <a title="Twitter" href="http://twitter.com/" target="_blank">Twitter</a> and other social media sites, I’ve got experts in all fields right there willing to help out. It also keeps me informed on up to the minute happenings in security, and it is lots of fun to banter with and trade ideas with others in near real-time.</p>
<p><em><strong>5. Name one security peer whom everyone with an interest in Network Security should follow. (Okay to name two if you can&#8217;t decide on only one)</strong></em><br />
Michael Santarcangello, The Security Catalyst, <a title="Twitter: Michael Santarcangello" href="http://twitter.com/catalyst" target="_blank">@catalyst</a> on Twitter. Santa thinks like no other security pro that I know. He is on to something that has the potential to set the security industry, and by default the companies we protect, on it’s ear. He not only realizes that we need a shift in how we think and how we practice security, but he has a plan and is actively getting the word out.</p>
<p><strong><em>6. What&#8217;s your take on security for social media and cloud services in general? Top concerns, overstated issues, etc.</em></strong><br />
First off, as I said earlier, they are here to stay, and we had better do something about it. We can’t just sit back and wait until our company adopts them, and then try to figure out how to secure them. Chances are there are people in your company who are already using them, and you just don’t know about it yet. As security pros, we have to know the issues, concerns, and threats to fix them before they become problems.  My first concern is that [this movement] is happening too fast and the industry is not keeping up. Businesses are adopting them without taking proper measures to ensure that they are being used in a secure manner. As for overstated issues, there are a few, but what makes them overstated is that lots of “experts” are talking about them and complaining about them withoutt offering any real solutions. It’s okay to talk about problems so that others become aware of them, but then you need to either quit talking or start offering something of value.</p>
<p><em><strong>7. What are the top 3 real-world (i.e. live) events you&#8217;d recommend for networking with security professionals?</strong></em><br />
Picking a specific three is hard because what you choose (especially if it costs money) needs to be based on what your area of focus is. <a title="RSA Conference" href="http://www.rsaconference.com/index.htm" target="_blank">RSA</a> is a safe bet for most any aspect of security, but beyond that, it gets foggy. If you have the budget, I’d say do something like this: Go to RSA and one conference that is specific to your area of expertise. Then I’d say find local chapters such as <a title="NAISG" href="http://www.naisg.org/" target="_blank">NAISG</a>, <a title="ISSA" href="http://www.issa.org/" target="_blank">ISSA</a>, <a title="InfraGard" href="http://www.infragard.net/" target="_blank">InfraGard</a>, <a title="Twitter: DC 404" href="http://twitter.com/dc404" target="_blank">DC 404</a>, etc., and attend their meetings and events. If you can do those three things, then you will be able to build a network that will serve you well in solving problems, answering questions, and finding new positions when the time comes to move on.</p>
<p class="bookmark-me">
    <script type="text/javascript">
	    yahooBuzzArticleHeadline = "Security Pros on Twitter (SPoT): Andy Willingham/@AndyWillingham";
	    yahooBuzzArticleId = "http://www.anuesystems.com/blog/2009/09/09/security-pros-on-twitter-spot-andy-willingham/";
    </script>
    <script type="text/javascript"
        src="http://d.yimg.com/ds/badge2.js"
        badgetype="logo">
    </script>    
    <a title="technorati.com" href="http://www.technorati.com/faves?add=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/technorati.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="del.icio.us" href="http://del.icio.us/post?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/delicious.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="stumbleupon.com" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/stumbleupon.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="digg.com" href="http://digg.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/digg.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.facebook.com" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;t=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/facebook.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="bookmarks.yahoo.com" href="http://bookmarks.yahoo.com/toolbar/savebm?opener=tb&amp;u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoo.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.google.com" href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/google.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="furl.com" href="http://www.furl.net/storeIt.jsp?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;t=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/furl.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="reddit.com" href="http://reddit.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/reddit.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="propeller.com" href="http://www.propeller.com/submit/?U=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;T=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/propeller.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="windowslive.com" href="https://favorites.live.com/quickadd.aspx?mkt=en-us&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/windowslive.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="myweb2.search.yahoo.com" href="http://myweb2.search.yahoo.com/myresults/bookmarklet?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoomyweb.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="linkedin.com" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/linkedin.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="twitthis.com" href="http://twitthis.com/twit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F09%2F09%2Fsecurity-pros-on-twitter-spot-andy-willingham%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Andy+Willingham%2F%40AndyWillingham"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/twitter.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.anuesystems.com/blog/2009/09/09/security-pros-on-twitter-spot-andy-willingham/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Security Pros on Twitter (SPoT): Jack Daniel/@Jack_Daniel</title>
		<link>http://www.anuesystems.com/blog/2009/08/26/security-pros-on-twitter-spot-jack-danieljack_daniel/</link>
		<comments>http://www.anuesystems.com/blog/2009/08/26/security-pros-on-twitter-spot-jack-danieljack_daniel/#comments</comments>
		<pubDate>Wed, 26 Aug 2009 17:14:39 +0000</pubDate>
		<dc:creator>Tommy P. Landry</dc:creator>
				<category><![CDATA[Content Filtering]]></category>
		<category><![CDATA[Monitoring Optimization]]></category>
		<category><![CDATA[Network Monitoring]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[virtualization]]></category>
		<category><![CDATA[@jack_daniel]]></category>
		<category><![CDATA[@SecurityTwits]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[Blackhat]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[jack daniel]]></category>
		<category><![CDATA[LinkedIn]]></category>
		<category><![CDATA[naisg]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[san jose]]></category>
		<category><![CDATA[Security B-Sides]]></category>
		<category><![CDATA[Shmoocon]]></category>
		<category><![CDATA[source boston]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[uncommon sense security]]></category>
		<category><![CDATA[utm]]></category>
		<category><![CDATA[vpn]]></category>

		<guid isPermaLink="false">http://www.anuesystems.com/blog/?p=324</guid>
		<description><![CDATA[Welcome to this week's installment of Security Pros on Twitter. Today's SP is a very well known security expert, and one who brings an intriguing dose of personality to the table, Jack Daniel. Self-described on Twitter as "Sporadic blogger, Tech Community Activist, InfoSec Curmudgeon, Reluctant CISSP, Amateur Blacksmith, and stuff", Mr Daniel is truly a man of many "hats." In addition to serving as the Director of the National Information Security Group (NAISG), Jack shares his musings on Twitter and his blog, Uncommon Sense Security.]]></description>
			<content:encoded><![CDATA[<div class="wp-caption alignleft" style="width: 176px"><img title="SPoT: Jack Daniel / @Jack_Daniel" src="http://www.anuesystems.com/blog/IMG_0550.jpg" alt="SPoT: Jack Daniel / @Jack_Daniel" width="166" height="315" /><p class="wp-caption-text">SPoT: Jack Daniel / @Jack_Daniel</p></div>
<p>Welcome to this week&#8217;s installment of Security Pros on Twitter. Today&#8217;s SP is a very well known security expert, and one who brings an intriguing dose of personality to the table, Jack Daniel. Self-described on Twitter as &#8220;<span>Sporadic blogger, Tech Community Activist, InfoSec Curmudgeon, Reluctant CISSP, Amateur Blacksmith, and stuff&#8221;, Mr Daniel is truly a man of many &#8220;hats.&#8221; In addition to serving as the </span>Director of the National Information Security Group (NAISG), Jack shares his musings on Twitter and his blog, <a title="Uncommon Sense Security" href="http://blog.uncommonsensesecurity.com/" target="_blank">Uncommon Sense Security</a>.</p>
<p><strong>Real Name: </strong>Jack Daniel<br />
<strong>Twitter Handle:</strong> <a title="Twitter: Jack Daniel" href="http://twitter.com/jack_daniel" target="_blank">@jack_daniel </a><br />
<strong>Top 3 Social Media/Networking Sites: </strong><br />
<a title="Twitter" href="http://twitter.com/" target="_blank">Twitter</a>, <a title="LinkedIn" href="http://www.linkedin.com/" target="_blank">Linkedin</a>, and <a title="Facebook" href="http://www.facebook.com/" target="_blank">Facebook </a>as a distant third</p>
<p><em><strong>1.</strong> <strong>In which area(s) of security are you most involved</strong>? </em><br />
I live and work in the <a title="Wikipedia: Unified Threat Management" href="http://en.wikipedia.org/wiki/Unified_Threat_Management" target="_blank">UTM</a> space, covering all the fundamentals of network security, <a title="Wikipedia: Firewall" href="http://en.wikipedia.org/wiki/Firewall" target="_blank">firewall</a>/<a title="Wikipedia: Content Filtering" href="http://en.wikipedia.org/wiki/Content_filtering" target="_blank">content filtering</a>/<a title="Wikipedia: Proxy Server" href="http://en.wikipedia.org/wiki/Proxy_server" target="_blank">proxies</a>/<a title="Wikipedia: Virtual Private Network" href="http://en.wikipedia.org/wiki/Virtual_private_network" target="_blank">VPNs</a>, etc.</p>
<p><em><strong>2. What security topics will be the most important in the next 18 months? Why? </strong></em><br />
It kills me to admit it, but &#8220;cloud&#8221; computing (whatever that means) will be very important.  Not because of the hype, but because, like <a title="Wikipedia: Virtualization" href="http://en.wikipedia.org/wiki/Virtualization" target="_blank">virtualization</a>, it will let us make old mistakes in new and creative ways while also offering exciting and original ways to get security wrong.</p>
<p>I also think that &#8220;<a title="Wikipedia: Antivirus" href="http://en.wikipedia.org/wiki/Antivirus" target="_blank">antivirus</a>&#8221; is of renewed importance.  Microsoft&#8217;s venture into free antivirus and the impact that will have on the AV industry, combined with the increasing irrelevance of traditional AV in defending against many modern attacks, means that it is time to step back and challenge what works, what doesn&#8217;t, and what to do about it.  We may not have many conversations about this, but we should.</p>
<p><strong><em>3. Biggest Pet Peeve: Name one thing about Network Security that you wish business stakeholders would understand and why.</em></strong><br />
A failure to grasp and act on the fundamentals.  In network security, this often manifests itself as an unhealthy push for needless complexity, which dramatically increases the likelihood of misconfiguration and failure.  (I&#8217;m not blaming anyone, but if I did, I would look toward San Jose, CA)  All the blinky-light boxes in the world will not overcome basic misconfiguration issues.</p>
<p><strong><em>4. Tell us why you became so active on Twitter and any other important social media outlets. What value are you getting?</em></strong><br />
My adoption of <a title="Twitter" href="http://twitter.com/" target="_blank">Twitter</a> was pretty slow, and has grown gradually over time.  It started as a way to stay in touch with friends and has expanded into a powerful (and still wonderfully inane) way to communicate.  I have gotten more out of Twitter than I can list in a short space, from friendships and information to Twitter being the starting point for the <a title="Security B-Sides" href="http://www.securitybsides.com/" target="_blank">Security B-Sides</a> events.</p>
<p><strong><em>5. Name one security peer whom everyone with an interest in Network Security should follow. (OK to name 2 if you can’t decide on only one)</em></strong><br />
That&#8217;s hard; I follow too many people for too many different reasons to pick one or two.  I&#8217;ll cop out and recommend following <a title="Twitter: Security Twits" href="http://twitter.com/securitytwits" target="_blank">@SecurityTwits</a>, that is a good way to find out who is saying or asking what, which leads to finding good people to follow.</p>
<p><em><strong>6. What’s your take on security for social media and cloud services in general? Top concerns, overstated issues, etc.</strong></em><br />
The fundamental insecurity of social media is also why people use it.  Platforms designed for openness and sharing of content are perfect for exploitation, but if you lock them down, you lose their value.  User education is the only solution, and that will only reach a limited number of people (and they don&#8217;t have to listen).  I have more hope for the security of cloud services in general; I think it will eventually be possible to do an acceptable job of securing the infrastructure, but as with everything else, the client implementation is where I see ongoing insecurity.</p>
<p><strong><em>7. What are the top 3 real-world (i.e. live) events you’d recommend for networking with security professionals?</em></strong><br />
<a title="RSA Conference" href="http://www.rsaconference.com/index.htm" target="_blank">RSA</a> and <a title="Blackhat" href="http://www.blackhat.com/" target="_blank">BlackHat</a> are giant events with many opportunities for socializing and networking.  <a title="SOURCE Boston" href="http://www.sourceconference.com/index.php/boston2010" target="_blank">SOURCE Boston</a> is a much smaller event &#8211; you could almost call it intimate &#8211; and it really encourages the feel of community.  I&#8217;ll cheat and add a fourth &#8211; <a title="Shmoocon" href="http://www.shmoocon.org/" target="_blank">Shmoocon</a> is a great and affordable event.</p>
<p class="bookmark-me">
    <script type="text/javascript">
	    yahooBuzzArticleHeadline = "Security Pros on Twitter (SPoT): Jack Daniel/@Jack_Daniel";
	    yahooBuzzArticleId = "http://www.anuesystems.com/blog/2009/08/26/security-pros-on-twitter-spot-jack-danieljack_daniel/";
    </script>
    <script type="text/javascript"
        src="http://d.yimg.com/ds/badge2.js"
        badgetype="logo">
    </script>    
    <a title="technorati.com" href="http://www.technorati.com/faves?add=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/technorati.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="del.icio.us" href="http://del.icio.us/post?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/delicious.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="stumbleupon.com" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/stumbleupon.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="digg.com" href="http://digg.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/digg.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.facebook.com" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;t=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/facebook.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="bookmarks.yahoo.com" href="http://bookmarks.yahoo.com/toolbar/savebm?opener=tb&amp;u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoo.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.google.com" href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/google.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="furl.com" href="http://www.furl.net/storeIt.jsp?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;t=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/furl.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="reddit.com" href="http://reddit.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/reddit.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="propeller.com" href="http://www.propeller.com/submit/?U=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;T=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/propeller.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="windowslive.com" href="https://favorites.live.com/quickadd.aspx?mkt=en-us&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/windowslive.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="myweb2.search.yahoo.com" href="http://myweb2.search.yahoo.com/myresults/bookmarklet?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoomyweb.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="linkedin.com" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/linkedin.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="twitthis.com" href="http://twitthis.com/twit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F08%2F26%2Fsecurity-pros-on-twitter-spot-jack-danieljack_daniel%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Jack+Daniel%2F%40Jack_Daniel"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/twitter.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.anuesystems.com/blog/2009/08/26/security-pros-on-twitter-spot-jack-danieljack_daniel/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Pros on Twitter (SPoT): Justin Foster/@justin_foster</title>
		<link>http://www.anuesystems.com/blog/2009/07/28/security-pros-on-twitter-spot-justin-fosterjustin_foster/</link>
		<comments>http://www.anuesystems.com/blog/2009/07/28/security-pros-on-twitter-spot-justin-fosterjustin_foster/#comments</comments>
		<pubDate>Tue, 28 Jul 2009 13:00:35 +0000</pubDate>
		<dc:creator>Tommy P. Landry</dc:creator>
				<category><![CDATA[Anue Systems]]></category>
		<category><![CDATA[Monitoring Optimization]]></category>
		<category><![CDATA[Network Monitoring]]></category>
		<category><![CDATA[Networking Protocols]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[Blackhat]]></category>
		<category><![CDATA[blogger]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[Defcon]]></category>
		<category><![CDATA[endpoint]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[ids]]></category>
		<category><![CDATA[intergrity monitoring]]></category>
		<category><![CDATA[ips]]></category>
		<category><![CDATA[justin foster]]></category>
		<category><![CDATA[Log Inspection]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security as a service]]></category>
		<category><![CDATA[trend micro]]></category>
		<category><![CDATA[tweetdeck]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[vmsafe]]></category>
		<category><![CDATA[vswitches]]></category>

		<guid isPermaLink="false">http://www.anuesystems.com/blog/?p=266</guid>
		<description><![CDATA[As the second installment of our SPoT series, The Network View turns our attention to another Canadian Security Pro, Justin Foster (@justin_foster). Mr. Foster is employed by Trend Micro during working hours, and he also maintains his own independent blog, Developing Security. Go check out his Top 10 signs you are a Security Twit post from June 2009 for a quick chuckle. On that note...]]></description>
			<content:encoded><![CDATA[<div class="wp-caption alignright" style="width: 240px"><img class="     " title="SPoT: Justin Foster (@justin_foster)" src="https://s3.amazonaws.com/twitter_production/profile_images/222257811/profile_small.jpg" alt="SPoT: Justin Foster (@justin_foster)" width="230" height="230" /><p class="wp-caption-text">SPoT: Justin Foster (@justin_foster)</p></div>
<p>As the second installment of our SPoT series, The Network View turns our attention to another Canadian Security Pro, Justin Foster (<a title="Twitter: Justin Foster" href="http://twitter.com/justin_foster" target="_blank">@justin_foster</a>). Mr. Foster is employed by <a title="TrendMicro" href="http://us.trendmicro.com/us/home/" target="_blank">Trend Micro</a> during working hours, and he also maintains his own independent blog, <a title="Developing Security Blog" href="http://www.developingsecurity.com/" target="_blank">Developing Security</a>. Go check out his <a title="Developing Security: Top 10 signs you are a Security Twit" href="http://www.developingsecurity.com/weblog/2009/06/top-10-signs-you-are-a-security-twit.html" target="_blank">Top 10 signs you are a Security Twit</a> post from June 2009 for a quick chuckle. On that note&#8230;</p>
<p><strong>Real Name: </strong>Justin Foster<br />
<strong>Twitter Handle: </strong><a title="Twitter: Justin Foster" href="http://twitter.com/justin_foster" target="_blank">@justin_foster</a><br />
<strong>Top 3 Social Media/Networking Sites:</strong><br />
<a title="Twitter" href="http://twitter.com/" target="_blank">Twitter</a> / <a title="LinkedIn" href="http://www.linkedin.com/" target="_blank">LinkedIn</a> / <a title="Security Bloggers Network" href="http://www.securitybloggers.net/" target="_blank">Security Bloggers Network</a></p>
<p><strong><em>1. In which area(s) of security are you most involved?</em></strong><br />
I&#8217;m an Architect for <a title="TrendMicro" href="http://us.trendmicro.com/us/home/" target="_blank">Trend Micro</a> focusing on <a title="IDS vs. IPS Explained" href="http://www.networksecurityjournal.com/features/ids-vs-ips-052907/" target="_blank">IDS/IPS</a>, <a title="Wikipedia: Firewall" href="http://en.wikipedia.org/wiki/Firewall" target="_blank">Firewall</a>, <a title="Network Integrity Monitoring" href="http://www.dailyblogtips.com/sucuri-guest-post/" target="_blank">Integrity Monitoring</a>, and <a title="Developing Security: Log Inspection" href="http://www.developingsecurity.com/weblog/log-inspection/" target="_blank">Log Inspection</a>. At work, I generally concentrate on network and endpoint security management. Personally, I&#8217;m interested in a wide spectrum of information security disciplines.</p>
<p><strong><em>2. What security topics will be the most important in the next 18 months? Why?</em></strong><br />
Over the next 18 months, we will see the promises made in virtualized security become reality. Third party vSwitches and VMsafe-based appliances have the potential to dramatically change how compensating controls are deployed and what security vendors will be capable of. I also believe <a title="Security as a Service" href="http://en.wikipedia.org/wiki/Security_as_a_service" target="_blank">Security as a Service</a> will introduce new products and product architectures.</p>
<p><strong><em>3. Biggest Pet Peeve: Name one thing about Network Security that you wish business stakeholders would understand and why.</em></strong><br />
I think perimeter security is becoming increasingly irrelevant. We all know the perimeter is porous and the demands of mobile and Cloud computing require security applied much closer to the endpoint. What we sometimes fail to understand is how important it is to take advantage of that proximity and tailor the security policy to each individual endpoint.</p>
<p><strong><em>4. Tell us why you became so active on Twitter and any other important social media outlets. What value are you getting?</em></strong><br />
I initially joined <a title="Twitter" href="http://twitter.com/" target="_blank">Twitter</a> to keep pace with the news from the security community, but I quickly found it has so many uses. With Twitter I have had engaging open-ended debates, aided my research efforts, discovered new topics I wouldn&#8217;t have even known to look for, and found a wealth of security blogs to read. I use ongoing searches in <a title="TweetDeck" href="http://tweetdeck.com/beta/" target="_blank">TweetDeck</a> to stay tuned to specific security and development topics; a technique that has paid off by saving me substantial time more than once.</p>
<p><strong><em>5. Name one security peer whom everyone with an interest in Network Security should follow. (OK to name 2 if you can’t decide on only one)</em></strong><br />
Two people I would highly recommend are @<a title="Twitter: Andrew Hay" href="http://twitter.com/andrewsmhay" target="_blank">andrewsmhay</a> and @<a title="Twitter: FalconsView" href="http://twitter.com/falconsview" target="_blank">falconsview</a>. Both live and breathe security and can always be counted on for a considered opinion or lively debate. Each is a prolific blogger and author, and it doesn&#8217;t hurt that they are both good people in real life as well.</p>
<p><strong><em>6. What’s your take on security for social media and cloud services in general? Top concerns, overstated issues, etc.</em></strong><br />
Fundamentally, securing a highly interactive web application like <a title="Facebook" href="http://www.facebook.com" target="_blank">Facebook</a> or <a title="Twitter" href="http://twitter.com/" target="_blank">Twitter</a> is extremely challenging. While we have seen significant exploitation of weaknesses in these applications, the fact that they are centrally deployed has resulted in extremely rapid remediation of the issues (sometimes within hours). Compare that to traditional software, and the benefits and drawbacks tend to balance out. When it comes to leakage of personal information, we all have to remember that anything we put into the Cloud is ultimately out of our control.</p>
<p><em><strong>7. What are the top 3 real-world (i.e. live) events you’d recommend for networking with security professionals?</strong></em><br />
For sure <a title="RSA Conference" href="https://365.rsaconference.com/index.jspa" target="_blank">RSA</a> and <a title="Blackhat" href="http://www.blackhat.com/" target="_blank">BlackHat</a>/<a title="Defcon" href="http://www.defcon.org/" target="_blank">DEFCON</a> top the list, but it&#8217;s important to network with other security-minded people in your local community as well. <a title="Twitter" href="http://twitter.com" target="_blank">Twitter</a> is a great tool to carry on the conversation long after the convention or meeting has passed.</p>
<p class="bookmark-me">
    <script type="text/javascript">
	    yahooBuzzArticleHeadline = "Security Pros on Twitter (SPoT): Justin Foster/@justin_foster";
	    yahooBuzzArticleId = "http://www.anuesystems.com/blog/2009/07/28/security-pros-on-twitter-spot-justin-fosterjustin_foster/";
    </script>
    <script type="text/javascript"
        src="http://d.yimg.com/ds/badge2.js"
        badgetype="logo">
    </script>    
    <a title="technorati.com" href="http://www.technorati.com/faves?add=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/technorati.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="del.icio.us" href="http://del.icio.us/post?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/delicious.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="stumbleupon.com" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/stumbleupon.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="digg.com" href="http://digg.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/digg.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.facebook.com" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;t=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/facebook.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="bookmarks.yahoo.com" href="http://bookmarks.yahoo.com/toolbar/savebm?opener=tb&amp;u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoo.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.google.com" href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/google.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="furl.com" href="http://www.furl.net/storeIt.jsp?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;t=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/furl.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="reddit.com" href="http://reddit.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/reddit.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="propeller.com" href="http://www.propeller.com/submit/?U=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;T=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/propeller.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="windowslive.com" href="https://favorites.live.com/quickadd.aspx?mkt=en-us&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/windowslive.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="myweb2.search.yahoo.com" href="http://myweb2.search.yahoo.com/myresults/bookmarklet?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoomyweb.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="linkedin.com" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/linkedin.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="twitthis.com" href="http://twitthis.com/twit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F28%2Fsecurity-pros-on-twitter-spot-justin-fosterjustin_foster%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+Justin+Foster%2F%40justin_foster"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/twitter.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.anuesystems.com/blog/2009/07/28/security-pros-on-twitter-spot-justin-fosterjustin_foster/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Pros on Twitter (SPoT): James Arlen/@myrcurial</title>
		<link>http://www.anuesystems.com/blog/2009/07/21/security-pros-on-twitter-spot-james-arlenmyrcurial/</link>
		<comments>http://www.anuesystems.com/blog/2009/07/21/security-pros-on-twitter-spot-james-arlenmyrcurial/#comments</comments>
		<pubDate>Tue, 21 Jul 2009 16:39:59 +0000</pubDate>
		<dc:creator>Tommy P. Landry</dc:creator>
				<category><![CDATA[Network Monitoring]]></category>
		<category><![CDATA[Risk Management]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[#FollowFriday]]></category>
		<category><![CDATA[Blackhat]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[Data Breaches]]></category>
		<category><![CDATA[Defcon]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[Hotmail]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[James Arlen]]></category>
		<category><![CDATA[LinkedIn]]></category>
		<category><![CDATA[LiquidMatrix]]></category>
		<category><![CDATA[myrcurial]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[SecTor]]></category>
		<category><![CDATA[Shmoocon]]></category>
		<category><![CDATA[SourceBoston]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.anuesystems.com/blog/?p=253</guid>
		<description><![CDATA[Beginning this week, we are kicking off our new SPOT (Security Pros on Twitter) series, profiling security professionals who are present and active on Twitter. We will profile one SP each week through the rest of the summer.

Since Anue Systems  (@AnueSystems) first joined in on the Twitter fun, we have followed and interacted with a variety of folks, and these are the thought leaders who we'd turn to first with a specific, hands-on question regarding security of the internal network, the cloud, or even virtualized environments.

Without further ado, let's get to it...]]></description>
			<content:encoded><![CDATA[<div class="wp-caption alignright" style="width: 240px"><img class="   " title="James Arlen (@myrcurial)" src="http://www.anuesystems.com/blog/Myrcurial.jpg" alt="SPot: James Arlen/@myrcurial" width="230" height="286" /><p class="wp-caption-text">SPoT: James Arlen (@myrcurial)</p></div>
<p>Beginning this week, we are kicking off our new SPoT (Security Pros on <a title="Twitter" href="http://twitter.com" target="_blank">Twitter</a>) series, profiling security professionals who are present and active on Twitter. We will profile one SP each week through the rest of the summer.</p>
<p>Since Anue Systems  (<a title="Anue Systems Twitter Profile" href="http://twitter.com/AnueSystems" target="_blank">@AnueSystems</a>) first joined in on the Twitter fun, we have followed and interacted with a variety of folks, and these are the thought leaders who we&#8217;d turn to first with a specific, hands-on question regarding security of the internal network, the cloud, or even virtualized environments.</p>
<p>Without further ado, let&#8217;s get to it&#8230;</p>
<p><strong>Real Name: </strong>James Arlen<br />
<strong>Twitter Handle: </strong><a title="myrcurial Twitter Profile" href="http://twitter.com/myrcurial" target="_blank">@myrcurial</a><br />
<strong>Top 3 Social Media/Networking Sites: </strong><br />
<a title="Twitter" href="http://twitter.com" target="_blank">Twitter </a>/ <a title="LinkedIn" href="http://www.linkedin.com/" target="_blank">LinkedIn </a>/ <a title="LiquidMatrix Security Digest" href="http://www.liquidmatrix.org/" target="_blank">Liquidmatrix Security Digest</a>!</p>
<p><em><strong>1. In which area(s) of security are you most involved?</strong></em><br />
I used to be technical/tactical &#8211; IT Security. These days, I&#8217;m spending most of my time working on Organizational Security and Risk Management.</p>
<p><em><strong>2. What security topics will be the most important in the next 18 months? Why?</strong></em><br />
Of key importance (of course) is going to be the increasingly porous &#8220;perimeter&#8221; which will surpass database flaws as the primary source of data breaches. Unfortunately, the vendors are not on our side and are not going to help solve the problem. It needs to be fixed at the employee/user level through increased awareness of the problem and active cooperation on solutions.</p>
<p><em><strong>3. Biggest Pet Peeve: Name one thing about Network Security that you wish business stakeholders would understand and why.</strong></em><br />
The thing that is the hardest to explain is that the presence of a firewall isn&#8217;t going to save you (the business user) from your own foolish actions &#8211; the best preventative technological controls available can be bypassed by (a) 14 year old kids and (b) users doing what they feel is the best thing at the time. <em>[Once more for effect</em>] A firewall won&#8217;t save you from sending your customer list to 100 sales people and 1 ex-sales person&#8217;s Hotmail account.</p>
<p><em><strong>4. Tell us why you became so active on Twitter and any other important social media outlets. What value are you getting?</strong></em><br />
The primary reason that I became active on Twitter is to have access to a peer group. The Canadian security space is fairly compact, and sometimes, having an international opinion is a great thing. And of course, [I'm there for] the fooling about and goofing off &#8211; Twitter is an outlet for stress as much as it is an inlet for knowledge.</p>
<p><em><strong>5. Name one security peer whom everyone with an interest in Network Security should follow. (OK to name 2 if you can&#8217;t decide on only one)</strong></em><br />
Wow &#8211; it&#8217;s <a title="#FollowFriday search on Twitter" href="http://search.twitter.com/search?q=%23FollowFriday" target="_blank">#FollowFriday</a>! If you&#8217;re focused on Network Security, you should really be following <a title="Jack Daniel Twitter Profile" href="http://twitter.com/jack_daniel" target="_blank">@jack_daniel</a> and <a title="Jennifer J. Twitter Profile" href="http://twitter.com/jjx" target="_blank">@jjx</a>. He&#8217;s a curmudgeon who generally cuts to the core of the issue FAST. She&#8217;s about as unlikely a security expert as you can imagine &#8211; short, blonde, southern accent &#8211; but if you&#8217;re mature enough to value people for their skill rather than the package, she&#8217;ll teach you a thing or two that you never expected. <em>[The Network View has engaged with both of these security experts for inclusion in SPoT series as well.]</em></p>
<p><em><strong>6. What&#8217;s your take on security for social media and cloud services in general? Top concerns, overstated issues, etc.</strong></em><br />
Security &#8211; for social media? I&#8217;m pretty sure there isn&#8217;t much of that. My simplest response is that you shouldn&#8217;t depend on social media to provide you with any security &#8211; if you&#8217;re not comfortable putting it on a postcard or wearing it on a t-shirt, you shouldn&#8217;t be posting it to a social media site. With regard to cloud security &#8211; ask <a title="Beaker Twitter Profile" href="http://twitter.com/beaker" target="_blank">@Beaker</a>, I get all of my opinions from him.</p>
<p><strong><em>7. What are the top 3 real-world (i.e. live) events you&#8217;d recommend for networking with security professionals?</em></strong><br />
The number one thing is to remember that for any event &#8211; from a local SIG all the way up to <a title="Blackhat" href="http://www.blackhat.com/" target="_blank">Blackhat </a>or <a title="RSA Conference" href="https://365.rsaconference.com/index.jspa" target="_blank">RSA </a>- the most important thing to do is cruise the &#8220;Hallway Track&#8221;, get involved in conversations, and have an opinion. If you were coming to me and asking me where to spend your money &#8211; considering value for dollar &#8211; <a title="Defcon" href="http://www.defcon.org/" target="_blank">DEFCON</a>, <a title="Shmoocon" href="http://www.shmoocon.org/" target="_blank">Shmoocon</a>/<a title="Source Conference" href="http://www.sourceconference.com/" target="_blank">SourceBoston</a>/<a title="SecTor Conference" href="http://www.sector.ca/" target="_blank">SecTor</a>, and your local SIG. The big names (<a title="RSA Conference" href="https://365.rsaconference.com/index.jspa" target="_blank">RSA</a> and <a title="Blackhat" href="http://www.blackhat.com/" target="_blank">Blackhat</a>) are awesome, but unless someone is covering the tab, they&#8217;re crazy expensive and you can get the same content at the second tier conferences for less money with better access to the speakers.</p>
<p class="bookmark-me">
    <script type="text/javascript">
	    yahooBuzzArticleHeadline = "Security Pros on Twitter (SPoT): James Arlen/@myrcurial";
	    yahooBuzzArticleId = "http://www.anuesystems.com/blog/2009/07/21/security-pros-on-twitter-spot-james-arlenmyrcurial/";
    </script>
    <script type="text/javascript"
        src="http://d.yimg.com/ds/badge2.js"
        badgetype="logo">
    </script>    
    <a title="technorati.com" href="http://www.technorati.com/faves?add=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/technorati.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="del.icio.us" href="http://del.icio.us/post?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/delicious.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="stumbleupon.com" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/stumbleupon.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="digg.com" href="http://digg.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/digg.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.facebook.com" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;t=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/facebook.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="bookmarks.yahoo.com" href="http://bookmarks.yahoo.com/toolbar/savebm?opener=tb&amp;u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoo.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.google.com" href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/google.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="furl.com" href="http://www.furl.net/storeIt.jsp?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;t=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/furl.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="reddit.com" href="http://reddit.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/reddit.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="propeller.com" href="http://www.propeller.com/submit/?U=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;T=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/propeller.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="windowslive.com" href="https://favorites.live.com/quickadd.aspx?mkt=en-us&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/windowslive.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="myweb2.search.yahoo.com" href="http://myweb2.search.yahoo.com/myresults/bookmarklet?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoomyweb.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="linkedin.com" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/linkedin.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="twitthis.com" href="http://twitthis.com/twit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F07%2F21%2Fsecurity-pros-on-twitter-spot-james-arlenmyrcurial%2F&amp;title=Security+Pros+on+Twitter+%28SPoT%29%3A+James+Arlen%2F%40myrcurial"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/twitter.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.anuesystems.com/blog/2009/07/21/security-pros-on-twitter-spot-james-arlenmyrcurial/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Monitoring Resources: Network Security Blog</title>
		<link>http://www.anuesystems.com/blog/2009/02/26/monitoring-resources-network-security-blog/</link>
		<comments>http://www.anuesystems.com/blog/2009/02/26/monitoring-resources-network-security-blog/#comments</comments>
		<pubDate>Thu, 26 Feb 2009 13:00:17 +0000</pubDate>
		<dc:creator>Tommy P. Landry</dc:creator>
				<category><![CDATA[Network Monitoring]]></category>
		<category><![CDATA[Networking Protocols]]></category>
		<category><![CDATA[Tool Aggregation]]></category>
		<category><![CDATA[blog]]></category>
		<category><![CDATA[mckeay]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[pci]]></category>
		<category><![CDATA[resources]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[tommy landry]]></category>
		<category><![CDATA[trustwave]]></category>

		<guid isPermaLink="false">http://www.anuesystems.com/blog/?p=74</guid>
		<description><![CDATA[NOTE: The Network View is offering a series of reviews on network visibility-related resources and blogs available online. If you have a URL which we should consider reviewing, please send to tlandry (at) anuesystems (dot) com.
This week, let&#8217;s move back from lists of monitoring tools to Security-focused blogs. Today we&#8217;ll cover another very useful and [...]]]></description>
			<content:encoded><![CDATA[<p><em>NOTE: The Network View is offering a series of reviews on network visibility-related resources and blogs available online. If you have a URL which we should consider reviewing, please send to tlandry (at) anuesystems (dot) com.</em></p>
<p>This week, let&#8217;s move back from lists of monitoring tools to Security-focused blogs. Today we&#8217;ll cover another very useful and insightful security resource named (coincidentally enough):</p>
<p style="text-align: center;">
<p style="text-align: center;"><a title="Network Security Blog (mckeay.net)" href="http://www.mckeay.net/" target="_blank">Network Security Blog</a></p>
<div class="wp-caption alignleft" style="width: 327px"><a href="http://www.mckeay.net/"><img title="Network Security Blog Screenshot" src="http://www.anuesystems.com/blog/NetSecBlog-Screenshot,2-24-09.JPG" alt="Network Security Blog Screenshot" width="317" height="258" /></a><p class="wp-caption-text">Network Security Blog Screenshot</p></div>
<p>The Network Security Blog dubs itself &#8220;<a title="Network Security Blog About Page" href="http://www.mckeay.net/about/" target="_blank">The views of one man on security, privacy and anything else that catches his attention</a>.&#8221;</p>
<p>The &#8220;one man&#8221; in here is Martin McKeay, who is a Senior Consultant focusing on PCI assesssments for <a title="TrustWave Home Page" href="https://www.trustwave.com/" target="_blank">TrustWave</a>. Again, in his own words, &#8220;I took up blogging as a means to extend my knowledge and test my ideas about security by putting them up for peer review.&#8221; That objective is true to the very idea of blogging, and this particular resource has been available since 2003, so we thought we&#8217;d dig into it in detail to see what value you might derive from it for your own use.</p>
<p>With a professional focus on PCI, you&#8217;d initially guess that Mr. McKeay blogs primarily on security of payments, but that would be short-sighted. One nice feature that this blog incorporates is a lefthand navigation listing of topic categories, full with counts of the number of blog entries you can find in each category. And surprisingly, PCI is the tenth most popular category listed, following General (349 entries), Podcast (263), Hacking (223), Security Advisories (147), Blogging (132), Government (124), Simple Security (123), Privacy (92), and Site Configuration (88). [all numbers current as of February 24, 2009.] Obviously, those categories are not mutually exclusive, but still, his materials are fairly well-rounded with security topics.</p>
<p>Although he covers the following less frequently, his list of categories is also peppered with things such as Encryption, Firewall, Risk, Social Networking, Microsoft, Linux, IDS, and Phishing/Scams/etc.</p>
<p>However, key topics aside, what jumped out at me during my review of the blog is the fact that Martin is firmly entrenched in the world of Security. He works with several other bloggers and thought leaders on a weekly podcast, links to a nice list of blogs that I intend to dig into in the coming days, and actively participates in Security Blogging events (e.g. Security Bloggers meetup at the upcoming <a title="RSA Conference 2009" href="http://www.rsaconference.com/2009/us" target="_blank">RSA Conference 2009</a>).</p>
<p>What all of this tells me is that he is truly in tune with the needs, frustrations, and successes that are currently of importance in this space. And that&#8217;s the sort of guy you want to exchange ideas with, so we recommend you take a look around the site, post some comments, and generally enjoy his work. While you are there, tell him we sent you!</p>
<p>You can also find Martin on Twitter: @mckeay. While you are at it, why don&#8217;t you go ahead and follow @AnueSystems too?</p>
<p class="bookmark-me">
    <script type="text/javascript">
	    yahooBuzzArticleHeadline = "Monitoring Resources: Network Security Blog";
	    yahooBuzzArticleId = "http://www.anuesystems.com/blog/2009/02/26/monitoring-resources-network-security-blog/";
    </script>
    <script type="text/javascript"
        src="http://d.yimg.com/ds/badge2.js"
        badgetype="logo">
    </script>    
    <a title="technorati.com" href="http://www.technorati.com/faves?add=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/technorati.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="del.icio.us" href="http://del.icio.us/post?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;title=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/delicious.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="stumbleupon.com" href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;title=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/stumbleupon.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="digg.com" href="http://digg.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;title=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/digg.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.facebook.com" href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;t=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/facebook.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="bookmarks.yahoo.com" href="http://bookmarks.yahoo.com/toolbar/savebm?opener=tb&amp;u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoo.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="www.google.com" href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;title=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/google.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="furl.com" href="http://www.furl.net/storeIt.jsp?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;t=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/furl.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="reddit.com" href="http://reddit.com/submit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;title=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/reddit.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="propeller.com" href="http://www.propeller.com/submit/?U=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;T=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/propeller.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="windowslive.com" href="https://favorites.live.com/quickadd.aspx?mkt=en-us&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/windowslive.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="myweb2.search.yahoo.com" href="http://myweb2.search.yahoo.com/myresults/bookmarklet?u=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/yahoomyweb.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="linkedin.com" href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;title=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/linkedin.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> <a title="twitthis.com" href="http://twitthis.com/twit?url=http%3A%2F%2Fwww.anuesystems.com%2Fblog%2F2009%2F02%2F26%2Fmonitoring-resources-network-security-blog%2F&amp;title=Monitoring+Resources%3A+Network+Security+Blog"><img src="http://www.anuesystems.com/blog/wp-content/plugins/bookmark-me/images/twitter.png" style="margin:0;border:0;padding:0" alt="bookmark"/></a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.anuesystems.com/blog/2009/02/26/monitoring-resources-network-security-blog/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
