Hello,
I now am offering the following service via Infamous Agenda. Ask a question, get an answer! Free!
I'll post the questions and the answers.
For sort of serious questions email goodquestions at infamousagenda com An example below:
- If I have expired credit card numbers in a database, is the database in or out of the scope for PCI-DSS compliance?
For the questions you are almost embarrassed to ask email stupidquestions at infamousagenda com
- What's a HSM?
Then there is dearmatty at infamousagenda com my Agony Aunt column, an example below.
Dear Matty,
I'm a CISO but I'm getting no love from our CFO. We have had some lovely trysts in the past, I fondly remember wooing him with our Identity Management business case. Oh how he swooned with the return on investment calculations. Recently he has cooled to me and I just can't get his attention. Dear Matty what can I do to recapure his affections and clinch that lunch date?
Desperate and Dateless.
Dear Desperate and Dateless,
Your CFO is cooling to you with the cooling economic climate. Present to him some examples of how security can enable and support business initiatives. Good examples could include:
- virtualisation security standard development - enabled virtualisation to be used on a new project resulting in capital expenditure reduction.
- establishing a VPN - now an outsourcer in India can access systems from the internet securely without WAN costs, saving ongoing operational expenditure
Make sure there is a theme of enabling cap e and op ex cost reductions and the CFO will be courting you!
Good Luck from Dear Matty.
About Me
- Matthew Hackling
- Matt runs his own security consultancy called Ronin Security. His focus is information security management and he has a keen interest in infrastructure and web application security. He's a CISSP and the current Branch Executive of the Melbourne chapter of the Australian Information Security Association.
Blog Archive
-
▼
2009
(56)
-
▼
January
(17)
- It is hot
- Tool Kit
- PCI-DSS
- Access to security tools
- Cross Site Request Forgery in the Wild
- Builders vs breakers
- Pen testing is dead? Part two
- Pen testing is dead?
- nice article from grossman
- Ask a question
- What is the next big thing?
- Affiliate program now online
- What are the hard things to tackle that no one tal...
- Mandatory Internet Filtering
- just registered www.infamousagenda.com
- 2009 Predictions
-
▼
January
(17)
Labels
- AISA (1)
- australian information security market (1)
- career advice (1)
- causes (1)
- DoS (1)
- economics (1)
- FUD (1)
- futurism (1)
- information security governance (4)
- IPS (1)
- privacy (2)
- sacred cows (1)
- security patching (1)
- vulnerability management (1)
Friday, January 9, 2009
Subscribe to:
Post Comments (Atom)
Handy Links
Matt's list of blogs
-
-
-
-
-
-
Dear America – How much is the tip?3 weeks ago
-
-
0 comments:
Post a Comment