<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-5272895070333572329</id><updated>2011-11-27T16:15:38.893-08:00</updated><category term='Mark Joyner'/><category term='tools'/><category term='simpleology'/><category term='CISSP'/><category term='chapter'/><category term='mindset'/><category term='SSCP'/><category term='Pen Testers'/><category term='Shon Harris'/><category term='privacy'/><category term='ISSA'/><category term='Information Security'/><category term='Testing'/><category term='CPE'/><category term='practice'/><category term='consultants'/><category term='(ISC)2'/><category term='web 2.0'/><category term='tips'/><category term='course'/><category term='internet'/><category term='InfoSec'/><category term='Passwords'/><category term='windows'/><category term='guides'/><category term='Mpack'/><category term='training'/><category term='New Squidoo Lens'/><category term='blogs'/><category term='White Hat'/><category term='Got Access?'/><category term='First Global Effort: US Secret Service'/><category term='http://www.Twitter.com/CheriSigmon'/><category term='reading'/><category term='personal information'/><category term='exam'/><category term='MySQL'/><category term='Italian Post Form Cyber-Crime Task Force'/><category term='http://www.squidoo.com/infosecissp'/><category term='Voice-Mail Security'/><category term='pii'/><category term='Study Guides'/><category term='success'/><category term='SANS'/><category term='Events Calendar'/><category term='CBK'/><category term='preparation'/><category term='gaming'/><category term='morin'/><category term='online'/><category term='certification'/><category term='Speakers'/><category term='officers'/><category term='IA'/><category term='exploits'/><category term='Penetration'/><category term='armand'/><category term='prep'/><category term='marketing'/><category term='roboform'/><category term='article'/><category term='InfoSec News'/><category term='blogging'/><category term='identity theft'/><title type='text'>InfoSec Information Security, CISSP Prep, IA Community Blog</title><subtitle type='html'>InfoSec Information Security Blog for IA Professionals, fellow CISSP friends, and candidates for CISSP, CISM, GSLC, and other InfoSec certifications.  All computer users are welcome to participate. Add a comment. Jump in! @CheriSigmon</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>29</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-4845371417674983363</id><published>2010-05-19T12:40:00.001-07:00</published><updated>2010-05-19T12:40:31.660-07:00</updated><title type='text'>White House Asks Public for Game Changing Cyber security Ideas</title><content type='html'>&lt;span xmlns=''&gt;&lt;p style='margin-left: 20pt'&gt;&lt;span style='font-family:Courier; font-size:12pt'&gt;&lt;strong&gt;UPDATE:  White House asks public for game changing cybersecurity ideas&lt;/strong&gt;&lt;br/&gt;&lt;span style='color:#666666'&gt;BY EMILY LONG&lt;/span&gt;&lt;br /&gt;				&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 20pt'&gt;&lt;span style='font-size:12pt'&gt;&lt;span style='font-family:Courier'&gt;The Obama administration will open next week a web-based forum to discuss a cybersecurity research and development agenda, according to a notice published in the Federal Register&lt;/span&gt;&lt;span style='font-family:Courier New'&gt;…&lt;/span&gt;&lt;span style='font-family:Courier'&gt;&lt;br /&gt;					&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 20pt'&gt;&lt;a target='1' href='blockedhttp://gove-media.com/portal/wts/ccmcfOc0nOaqiw7SaSfwy6iM7P7rj'&gt;&lt;span style='color:#006666; font-family:Courier; font-size:12pt'&gt;http://www.nextgov.com/nextgov/ng_20100514_8658.php?oref=rss?zone=itsecurity&lt;/span&gt;&lt;/a&gt;&lt;span style='font-family:Courier; font-size:12pt'&gt;&lt;br /&gt;				&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 20pt'&gt;&lt;span style='font-family:Courier; font-size:12pt'&gt;@CheriSigmon&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 20pt'&gt;&lt;span style='font-family:Arial; font-size:9pt'&gt;&lt;br /&gt;				&lt;/span&gt; &lt;/p&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-4845371417674983363?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/4845371417674983363/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=4845371417674983363' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/4845371417674983363'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/4845371417674983363'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/05/white-house-asks-public-for-game.html' title='White House Asks Public for Game Changing Cyber security Ideas'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-7866355883940227585</id><published>2010-05-19T11:40:00.001-07:00</published><updated>2010-05-19T11:40:45.167-07:00</updated><title type='text'>Lieberman's Cybersecurity Bill Leans On Buying Power</title><content type='html'>&lt;span xmlns=''&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='font-family:Arial'&gt;&lt;span style='color:black; font-size:10pt'&gt;&lt;strong&gt;[REPRINT] From Nextgov.com: Lieberman's cybersecurity bill leans on buying power&lt;/strong&gt;&lt;/span&gt;&lt;span style='color:red; font-size:6pt'&gt;&lt;br/&gt;&lt;/span&gt;&lt;span style='color:gray; font-size:7pt'&gt;By Aliya Sternstein&lt;/span&gt;&lt;span style='color:red; font-size:6pt'&gt;&lt;br /&gt;					&lt;/span&gt;&lt;span style='color:black; font-size:10pt'&gt;&lt;br /&gt;					&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='color:black; font-family:Arial; font-size:10pt'&gt;Measure would require acquisition officers to learn about security vulnerabilities in technology products in &lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='color:black; font-family:Arial; font-size:10pt'&gt;an effort to use the government's vast purchasing power to push vendors to provide more secure solutions.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='font-family:Arial; font-size:10pt'&gt;&lt;span style='color:black'&gt;Get the full story:  &lt;/span&gt;&lt;span style='color:#0066cc; text-decoration:underline'&gt;http://www.govexec.com/story_page.cfm?articleid=45297&lt;/span&gt;&lt;span style='color:black'&gt;&lt;br /&gt;					&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-7866355883940227585?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/7866355883940227585/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=7866355883940227585' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/7866355883940227585'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/7866355883940227585'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/05/lieberman-cybersecurity-bill-leans-on.html' title='Lieberman&amp;#39;s Cybersecurity Bill Leans On Buying Power'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-1463009711713498329</id><published>2010-03-18T09:20:00.001-07:00</published><updated>2010-03-18T09:20:35.743-07:00</updated><title type='text'>Executive Coach: They Can Handle the Truth</title><content type='html'>&lt;span xmlns=''&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;span style='color:black'&gt;&lt;strong&gt;Executive Coach: They Can Handle the Truth&lt;/strong&gt;&lt;br/&gt;&lt;/span&gt;By Scott Eblin&lt;span style='color:black'&gt;&lt;br /&gt;					&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Taking your career to the next level.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;&lt;strong&gt;Wednesday, March 17&lt;/strong&gt;&lt;br /&gt;				&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;span style='color:black'&gt;When I'm conducting feedback for a client one of the things I really like to hear from the direct reports is something like, "My manager shares information with us that other managers don't share with their teams.  That helps us make better decisions and do better work." The flip side of what makes me happy is that every direct report should be singing the praises of their manager sharing information with them. When you treat people like adults, they usually respond like adults. Most people can handle the truth and resent it when they feel like they're being played. See full article here:  &lt;a href='http://blogs.govexec.com/executivecoach/'/&gt;&lt;/span&gt;http://blogs.govexec.com/executivecoach/&lt;span style='color:black'&gt;&lt;br /&gt;					&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;This applies to cybersecurity and other professionals. Your comments are welcome! &lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='margin-left: 36pt'&gt;&lt;span style='color:black; font-family:Arial; font-size:10pt'&gt;&lt;br /&gt;				&lt;/span&gt; &lt;/p&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-1463009711713498329?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/1463009711713498329/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=1463009711713498329' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/1463009711713498329'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/1463009711713498329'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/03/executive-coach-they-can-handle-truth.html' title='Executive Coach: They Can Handle the Truth'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-3610020099433486532</id><published>2010-03-10T12:41:00.001-08:00</published><updated>2010-03-10T12:41:57.902-08:00</updated><title type='text'>Cybersecurity Pros Receive Salary Bump, Hiring to Increase</title><content type='html'>&lt;span xmlns=''&gt;&lt;p style='text-align: center'&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;strong&gt;Cybersecurity Pros Receive Salary Bump, Hiring to Increase&lt;br /&gt;&lt;/strong&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;The hiring managers surveyed in the U.S. said that they're looking &lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;for candidates with specific skills in these top five categories:&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;span style='text-decoration:underline'&gt;operations security&lt;/span&gt;;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;span style='text-decoration:underline'&gt;access control systems and methodology&lt;/span&gt;;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;span style='text-decoration:underline'&gt;information risk management&lt;/span&gt;;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;span style='text-decoration:underline'&gt;applications and system development security&lt;/span&gt;;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;and &lt;span style='text-decoration:underline'&gt;security architecture and models&lt;/span&gt;.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;More than half of the professionals surveyed in &lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;the U.S. received salary increases in 2009...&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;(#Cybersecurity Jobs)&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;SOURCE: clearancejobs.com&lt;/span&gt;&lt;/p&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-3610020099433486532?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/3610020099433486532/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=3610020099433486532' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/3610020099433486532'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/3610020099433486532'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/03/cybersecurity-pros-receive-salary-bump.html' title='Cybersecurity Pros Receive Salary Bump, Hiring to Increase'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-8324371845133203331</id><published>2010-03-08T13:48:00.001-08:00</published><updated>2010-03-08T13:48:34.702-08:00</updated><title type='text'>Outlook Bright for Federal IT {Security} Jobs</title><content type='html'>&lt;span xmlns=''&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:10pt'&gt;Wired Workplace: Outlook Bright for Federal IT Jobs (Repost)&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:10pt'&gt;Report says the need for technology {cybersecurity} professionals within the federal government remains strong.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:10pt'&gt;&lt;span style='color:black'&gt;A new survey finds that even in the tough economy, the job outlook for information security professionals within the federal government remains strong… (ISC)2's &lt;a target='_blank' href='http://www.isc2.org/uploadedFiles/surveys/2010%20Career%20Impact%20Survey%20Results_Global_FINAL.pdf'/&gt;&lt;/span&gt;&lt;span style='color:#0066cc; text-decoration:underline'&gt;2010 Career Impact Survey&lt;/span&gt;&lt;span style='color:black'&gt;, which interviewed nearly 3,000 information security professionals worldwide, including 668 respondents in the U.S. government, found that nearly 61 percent of federal respondents who identified themselves as having hiring abilities said they were looking to hire permanent and/or contract employees in 2010. Of those hiring, 51 percent said they plan to hire three or more information security professionals this year.  Despite these hiring projections, however, nearly 54 percent of hiring managers said their biggest hiring challenge was finding candidates with the right skills...&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:10pt'&gt;&lt;span style='color:black'&gt;See full column at GovExec here: &lt;a target='1' href='blockedhttp://get.govexec-media.com/portal/wts/cgmcfOciEvaqDVnamUjgmck7kfgua'/&gt;&lt;/span&gt;&lt;span style='color:#0066cc; text-decoration:underline'&gt;http://www.govexec.com/dailyfed/0310/030810ww.htm&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-8324371845133203331?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/8324371845133203331/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=8324371845133203331' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/8324371845133203331'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/8324371845133203331'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/03/outlook-bright-for-federal-it-security.html' title='Outlook Bright for Federal IT {Security} Jobs'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-2780655434705917774</id><published>2010-03-05T10:15:00.001-08:00</published><updated>2010-03-05T10:15:11.056-08:00</updated><title type='text'>The Human Element Complicates Cybersecurity</title><content type='html'>&lt;span xmlns=''&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;COMMENTARY (REPRINT)&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:#333333; font-family:OCR A Extended; font-size:12pt'&gt;&lt;strong&gt;The Human Element Complicates Cybersecurity&lt;br /&gt;&lt;/strong&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;span style='color:black'&gt;The human factor remains one of the great impediments to improving cybersecurity - &lt;/span&gt;&lt;span style='color:#333333'&gt;&lt;strong&gt;By Johnnie Hernandez Mar 03, 2010&lt;br /&gt;&lt;/strong&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Cyberspace is an untamed frontier. Data networks everywhere remain vulnerable to cyber threats. As Rep. Michael McCaul (R-Texas) recently pointed out, virtually every sector of cyberspace faces danger, including the U.S. military.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Congressional hearings on cybersecurity have revealed that most federal networks have been hacked, McCaul said. Many attacks are classified as espionage, with foreign countries stealing government information. One data dump was equivalent in size to the Library of Congress.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;"I hope as with 9/11 we don't turn a blind eye &amp;amp; have a denial-of-service attack before we address this issue," McCaul said.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Legislation passed in early February by the House could go a long way toward addressing the issue. McCaul and Rep. Daniel Lipinski (D-Ill.) are the primary sponsors of the Cybersecurity Enhancement Act of 2009, which would dedicate federal funds toward beefing up cybersecurity in the public and private sectors. The Senate is considering similar legislation.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Yet despite the congressional focus on cybersecurity, all the money, software and hardware in the world can't entirely ward off cybersecurity threats. One nontechnology factor greatly impedes cybersecurity: the human factor.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;We are the weak link in the chain. Too many people think they can just throw technology at the problem, but that alone is not the answer.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;If people don't follow consistent, well-defined security policies and procedures — and undergo regular cybersecurity training and exercises — then an organization's networks and data won't be safe.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Being human is our greatest strength and our greatest weakness. We are capable of developing the most innovative technical solutions for protecting a network, but if those solutions are not installed, configured and maintained properly, they will not be effective. Worse yet, they will give a false sense of protection.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;In a recent report, the International Institute for Strategic Studies, a British think tank, warned of the peril of cyber warfare.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;"Despite evidence of cyberattacks in recent political conflicts there is little appreciation internationally of how properly to assess cyber conflict," said John Chipman, director-general of the institute. "We are now, in relation to the problem of cyber warfare, at the same stage of intellectual development as we were in the 1950s in relation to possible nuclear war."&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;The recently released Quadrennial Defense Review and proposed Defense Department budget for fiscal 2011 emphasize cyber defense. For instance, the budget request supports establishment of the U.S. Cyber Command, which will organize and standardize DOD cyber defense practices.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Military outfits are fully aware of human shortfalls when it comes to cybersecurity, so they regularly conduct training in realistic settings. However, those military organizations can't undertake so-called live fire exercises without risking an actual network meltdown.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;In recent times, simulators — made by a number of companies, including ours — have been employed to train defenders of military and government data networks. The best example of this is an exercise known as Bulwark Defender. Each year, the military services and government agencies practice their tactics, techniques and procedures against unknown cyber enemies intent on stealing critical information and creating havoc on our networks. This is all accomplished within the safety of a nonoperational global network used to regularly train, certify and exercise network operators.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;The network is known as the Joint Cyberspace Operations Range. The range, which has been used since 2002, is run by the Air Force Network Integration Center at Scott Air Force Base, Ill. It has trained thousands of network operators and defenders; during the past three years, it's been the underlying structure for Bulwark Defender.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;We must develop and build new and smarter security technology and architectures in addition to defining and documenting security policies and processes. We must remain vigilant against cyber terrorism, cyber crime and cyber mischief. &lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;However, until we take humans out of the loop, we will have to deal with our human inadequacies.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;span style='color:#333333'&gt;&lt;strong&gt;About the Author:  &lt;/strong&gt;&lt;/span&gt;&lt;span style='color:black'&gt;Johnnie Hernandez is chief executive officer of EADS North America Defense Security &amp;amp; Systems Solutions Inc.&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;br /&gt; &lt;/p&gt;&lt;p style='background: white; margin-left: 5pt'&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;Brought to You By @SecurityQ &lt;a href='http://twitter.com/SecurityQ'&gt;http://twitter.com/SecurityQ&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-2780655434705917774?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/2780655434705917774/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=2780655434705917774' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/2780655434705917774'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/2780655434705917774'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/03/human-element-complicates-cybersecurity.html' title='The Human Element Complicates Cybersecurity'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-2971275509995339577</id><published>2010-03-05T08:28:00.001-08:00</published><updated>2010-03-05T08:28:21.648-08:00</updated><title type='text'>DoD Embraces Ethical Hacker Certification (CEH) to Protect US Interests</title><content type='html'>&lt;span xmlns=''&gt;&lt;p style='text-align: center'&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;&lt;strong&gt;United States Department of Defense Embraces Hacker Certification to Protect US Interests -&lt;/strong&gt;2010-03-01 &lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style='text-align: center'&gt;&lt;span style='color:#999999; font-family:OCR A Extended; font-size:12pt'&gt;&lt;em&gt;CEH is now formally integrated into the certification requirements for U.S. DoD IA Workforce &lt;br /&gt;&lt;/em&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;The U.S. Department of Defense (DoD) announces the official approval of the EC-Council Certified Ethical Hacker (CEH) certification program as a new baseline skills requirement for U.S.cyber defenders. Specifically, the new Certified Ethical Hacker program is required for the DoD's computer network defenders (CND's), a specialized personnel classification within the DoD's information assurance workforce.&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;The Certified Ethical Hacker requirement falls under the auspices of DoD Directive 8570 Information Assurance Workforce Improvement Program. The current version (incorporating Change 2) was signed by Assistant Secretary of Defense, John G. Grimes and was officially instated on February 25, 2010. Directive 8570 provides clear guidance to information assurance training, certification and workforce management across all components of the DoD.&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;The CND groups protect, monitor, analyze, detect, and respond to unauthorized activity within DoD information systems and computer networks.&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;With this directive, military service, contractors, and foreign employees across all job descriptions must show 100-percent compliance with the new Certified Ethical Hacker training requirement by 2011. This shows the DoD's focus on better training and preparation of the U.S. military workforce in this area.&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;The Certified Ethical Hacker qualification tests the certification holder's knowledge in the mindset, tools and techniques of a hacker, fortifying it's certification tag line: "To beat a hacker, you must think like one."&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;"CEH has been selected due to the immense technical and tactical nature of the certification," said Jay Bavisi, co-founder and president of EC-Council. "It is one of the most technically advanced certifications on the directive for CND professionals. In fact, it is the only certification approved across four out of the five categories to prepare the CND teams. While other policy-based programs add value, CEH prepares the U.S. CNDs to combat hackers in real time, defending U.S. interests globally."&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;Bavisi added: "We have been researching this space for quite some time and with this mandate from the DoD, there has never been a better time for us to beat the hackers at their own game. We are racing to research complex hacker techniques and in the next release of our CEH program, we hope to showcase in over 150 modules, detailed and extremely complex attack and countermeasures that will help raise the level of knowledge of the CND teams."&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;KEY FACTS:&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;CEH is now formally integrated into the certification requirements for U.S. DoD IA Workforce&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;CEH is now required for CND Analyst, CND Infrastructure Support, CND Incident Responder, and CND Auditor as defined by Directive 8570&lt;br /&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;Newly revised DoD 8570 is available at &lt;a href='http://www.dtic.mil/whs/directives/corres/pdf/857001m.pdf'&gt;&lt;span style='color:blue; text-decoration:underline'&gt;http://www.dtic.mil/whs/directives/corres/pdf/857001m.pdf&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;					&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;More information about EC-Council and Directive 8570 can be found at &lt;a href='https://www.eccouncil.org/about_us/dod_8570.aspx'&gt;&lt;span style='color:blue; text-decoration:underline'&gt;https://www.eccouncil.org/about_us/dod_8570.aspx&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;					&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt; &lt;/p&gt;&lt;p&gt;&lt;pre&gt;&lt;code&gt;For more information about EC-Council, visit the website: www.eccouncil.org&lt;/code&gt;&lt;/pre&gt;&lt;/p&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-2971275509995339577?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/2971275509995339577/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=2971275509995339577' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/2971275509995339577'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/2971275509995339577'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/03/dod-embraces-ethical-hacker.html' title='DoD Embraces Ethical Hacker Certification (CEH) to Protect US Interests'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-7841505534121921546</id><published>2010-03-05T08:05:00.001-08:00</published><updated>2010-03-05T08:05:43.889-08:00</updated><title type='text'>What Defense Recruiters Want (REPRINT)</title><content type='html'>&lt;span xmlns=''&gt;&lt;div&gt;&lt;table border='0' style='border-collapse:collapse'&gt;&lt;colgroup&gt;&lt;col style='width:617px'/&gt;&lt;col style='width:7px'/&gt;&lt;/colgroup&gt;&lt;tbody valign='top'&gt;&lt;tr style='background: white'&gt;&lt;td colspan='2'&gt;&lt;p&gt;&lt;span style='font-family:OCR A Extended; font-size:12pt'&gt;The following article makes excellent points, especially if you are a cybersecurity professional who is seeking employment now…&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style='text-align: center'&gt;&lt;table border='0' style='border-collapse:collapse; background: white'&gt;&lt;colgroup&gt;&lt;col style='width:600px'/&gt;&lt;/colgroup&gt;&lt;tbody valign='top'&gt;&lt;tr&gt;&lt;td vAlign='bottom'&gt;&lt;p&gt;&lt;span style='color:#003399; font-family:Arial; font-size:13pt'&gt;&lt;strong&gt;What Defense Recruiters Want&lt;/strong&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td vAlign='middle'&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;By Dona DeZube for ClearanceJobs.com - August 20, 2009&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td vAlign='middle'&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;If corporate recruiters had only one word to describe the perfect job candidate…, it would be "honest."&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;"It's hard to say who's perfect," says Jessica Heilmann, senior recruiting manger for 3Di Technologies, LLC, Annapolis, &lt;a href='http://www.clearancejobs.com/index.php?action=show_all&amp;amp;loc=20'&gt;&lt;span style='text-decoration:underline'&gt;Maryland&lt;/span&gt;&lt;/a&gt;. "The candidates I like best are honest and say what they want up front and what they're truly looking for. Don't say you'll move to Montana if you won't."&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;And don't say you have security clearances you don't have, as one recent job seeker did, she adds. That candidate came out of the military in 2004 and moved into stateside civilian work. He told Heilmann he was Ready Reserve and thought he had some kind of clearance, but didn't know what his status was. "My security officer checked and he didn't have one [a clearance]," she says. "I find it interesting when people have no idea of the status of their clearance. It's mysterious and unless you have a &lt;a href='http://www.clearancejobs.com/index.php?action=show_all&amp;amp;indu=mb'&gt;&lt;span style='text-decoration:underline'&gt;facility security officer&lt;/span&gt;&lt;/a&gt; (FSO) you have no way to find out."&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Barbara Kalman, CEO of &lt;a href='http://www.clearancejobs.com/index.php?action=show_all&amp;amp;lID=738'&gt;&lt;span style='text-decoration:underline'&gt;Kalman &amp;amp; Company&lt;/span&gt;&lt;/a&gt;, a Virginia Beach government contracting services firm, agrees. She likes candidates who neither over-inflate, nor understate their abilities. "The best thing is to be honest about your capabilities," she says.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Among the dishonest resumes Kalman has received was one from an applicant who claimed to have a military logistics background, yet knew nothing about logistics and another who claimed to have a degree from a university he hadn't attended.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Kalman, who hires for secure, technical positions, always checks the facts on the resumes she receives. "There are a lot of people unemployed right now, but the jobs we have are specific in background and educational needs, so it's not like I can randomly hire people," she says. "We check background, resume and references."&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;As a small business owner, Steven Mackie, president of &lt;a href='http://www.clearancejobs.com/index.php?action=show_all&amp;amp;lID=2039'&gt;&lt;span style='text-decoration:underline'&gt;Storage Strategies&lt;/span&gt;&lt;/a&gt;, Inc., a Springfield, Virginia data storage and engineering company, says he looks for candidates who are honest about their career goals. "What recruiters want are candidates who know what they want to do," he says.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;He estimates that 20 percent of the applicants he hears from are teachers, former military and government employees who don't have a specific job target and are looking for any job in the Department of Defense (DoD) contracting arena because they think there are lots of open jobs in that field they can fit into.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Meanwhile, he's hiring from among the 80 percent of candidates who know what direction they want their career to take and the next job they want. "I look for an objective up front that supports what you want to do," he adds, "and enough horsepower in education, experience and qualifications to get there."&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;In addition to being able to clearly represent your skills and clearance, Richard Mazelsky, president of &lt;a href='http://www.clearancejobs.com/index.php?action=show_all&amp;amp;lID=1922'&gt;&lt;span style='text-decoration:underline'&gt;Clovis&lt;/span&gt;&lt;/a&gt;, a Bethesda, Maryland recruitment firm, suggests you think about the type of company culture where you'll be effective.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;"Do you want to be in an environment where you have to report to a project plan lead once a week, or have a team directing your activities? Do you need to find the work intellectually stimulating?" he says. "You really have to do an assessment around fit."&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:OCR A Extended; font-size:12pt'&gt;Sticking to the truth about yourself and your career needs will ensure that your next position is the right one for you. "Nothing is worse for the candidate than to be placed in a situation where you're not capable or you're asked to do something you're not comfortable with," Mazelsky says. "It doesn't fare well for the candidate or the company."&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/div&gt;&lt;/td&gt;&lt;td vAlign='middle'&gt;&lt;p/&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr style='height: 5px; background: white'&gt;&lt;td vAlign='middle' colspan='2'&gt;&lt;p/&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr style='height: 1px; background: #999999'&gt;&lt;td vAlign='middle' colspan='2'&gt;&lt;p/&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr style='height: 1px; background: #666666'&gt;&lt;td vAlign='middle' colspan='2'&gt;&lt;p/&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr style='height: 4px; background: #3366cc'&gt;&lt;td vAlign='middle' colspan='2'&gt;&lt;p/&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/div&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-7841505534121921546?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/7841505534121921546/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=7841505534121921546' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/7841505534121921546'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/7841505534121921546'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/03/what-defense-recruiters-want-reprint.html' title='What Defense Recruiters Want (REPRINT)'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-1311430446263391917</id><published>2010-03-01T08:15:00.001-08:00</published><updated>2010-03-01T08:15:52.675-08:00</updated><title type='text'>Got Clearance? Got More Money</title><content type='html'>&lt;span xmlns=''&gt;&lt;ol&gt;&lt;li&gt;&lt;div&gt;&lt;span style='color:black; font-family:Arial; font-size:10pt'&gt;&lt;strong&gt;Wired Workplace:&lt;/strong&gt;&lt;br /&gt;						&lt;/span&gt;&lt;/div&gt;&lt;p&gt;&lt;span style='color:black; font-family:Arial; font-size:10pt'&gt;&lt;strong&gt;Got Clearance? Got More Money&lt;/strong&gt;&lt;br /&gt;						&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:Arial; font-size:10pt'&gt;A new survey shows that security-cleared IT professionals earn as much as 12 percent more in salary.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='font-family:Arial; font-size:10pt'&gt;&lt;span style='color:black'&gt;See full column here: &lt;a target='1' href='blockedhttp://get.govexec-media.com/portal/wts/cgmcfOchFgaqDEm6mRo7-ckzrA0Fa'/&gt;&lt;/span&gt;&lt;span style='color:#0066cc; text-decoration:underline'&gt;http://www.govexec.com/dailyfed/0310/030110ww.htm&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;/li&gt;&lt;/ol&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-1311430446263391917?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/1311430446263391917/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=1311430446263391917' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/1311430446263391917'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/1311430446263391917'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/03/got-clearance-got-more-money.html' title='Got Clearance? Got More Money'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-2571478392761936483</id><published>2010-03-01T04:48:00.001-08:00</published><updated>2010-03-01T04:48:26.767-08:00</updated><title type='text'>“Cyber Corps” - like Peace Corps?</title><content type='html'>&lt;span xmlns=''&gt;&lt;p&gt;&lt;span style='color:black; font-family:Arial; font-size:14pt'&gt;What do you think of this idea from a colleague?&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:Arial; font-size:14pt'&gt;Establish a "Cyber Corps" - set up like the Peace Corps - for cyber monitoring and early alerts, as well as for educational purposes.  Students studying cyber security would be a community asset (but not in terms of cyber war or cyber defense).  The purpose would be training for future cyber warriors while concurrently helping their community.  The &lt;strong&gt;cyber corps&lt;/strong&gt; tasks could be to monitor and report, and to provide sensing and early warning, etc.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:Arial; font-size:14pt'&gt;Rationale:  Since students must reproduce scenarios in a lab anyway, why not place them in a real environment with white or gray hats instructing?&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style='color:black; font-family:Arial; font-size:14pt'&gt;Your thoughts, please?&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-2571478392761936483?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/2571478392761936483/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=2571478392761936483' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/2571478392761936483'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/2571478392761936483'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2010/03/cyber-corps-like-peace-corps.html' title='“Cyber Corps” - like Peace Corps?'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-7443049701696140172</id><published>2009-08-04T00:42:00.000-07:00</published><updated>2009-08-04T00:45:15.079-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Italian Post Form Cyber-Crime Task Force'/><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec News'/><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec'/><category scheme='http://www.blogger.com/atom/ns#' term='IA'/><category scheme='http://www.blogger.com/atom/ns#' term='First Global Effort: US Secret Service'/><category scheme='http://www.blogger.com/atom/ns#' term='Information Security'/><title type='text'>InfoSec News, First Global Effort: US Secret Service, Italian Post Form Cyber-Crime Task Force</title><content type='html'>&lt;blockquote&gt;&lt;a href="http://cloudcomputing.sys-con.com/node/1057458"&gt;US Secret Service, Italian Post Form Cyber-Crime Task Force&lt;/a&gt;&lt;br /&gt;— The US Secret Service, the Italian Post Office and the postal division of the Italian police are teaming up to fight transnational cyber-crime as the Rome-based European Electronic Crimes Task Force (EECTF).&lt;br /&gt;&lt;br /&gt;It will be the first - and long overdue - task force designed to fight cyber crimes outside the United States and will use as its model the Electronic Crimes Task Force the Secret Service created in America.&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;-@CheriSigmon via @jaimechanaga&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-7443049701696140172?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://cloudcomputing.sys-con.com/node/1057458' title='InfoSec News, First Global Effort: US Secret Service, Italian Post Form Cyber-Crime Task Force'/><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/7443049701696140172/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=7443049701696140172' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/7443049701696140172'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/7443049701696140172'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2009/08/infosec-news-first-global-effort-us.html' title='InfoSec News, First Global Effort: US Secret Service, Italian Post Form Cyber-Crime Task Force'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-613015719035614297</id><published>2009-05-22T00:08:00.000-07:00</published><updated>2009-05-22T00:22:41.681-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='exam'/><category scheme='http://www.blogger.com/atom/ns#' term='mindset'/><category scheme='http://www.blogger.com/atom/ns#' term='preparation'/><category scheme='http://www.blogger.com/atom/ns#' term='prep'/><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec'/><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><category scheme='http://www.blogger.com/atom/ns#' term='success'/><category scheme='http://www.blogger.com/atom/ns#' term='Information Security'/><category scheme='http://www.blogger.com/atom/ns#' term='certification'/><category scheme='http://www.blogger.com/atom/ns#' term='CISSP'/><title type='text'>CISSP Exam this weekend</title><content type='html'>Many are taking the CISSP Exam this weekend. Good luck!&lt;br /&gt;&lt;br /&gt;Don't forget to take brain-food snacks for the duration (up to six hours).  You should be able to bring a beverage with a LID and a lunch or snacks for breaks.  Do take your breaks.&lt;br /&gt;&lt;br /&gt;Relax...  Stay loose.  Do your best.  Let us know how it goes!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-613015719035614297?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.isc2.org' title='CISSP Exam this weekend'/><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/613015719035614297/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=613015719035614297' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/613015719035614297'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/613015719035614297'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2009/05/cissp-exam-this-weekend.html' title='CISSP Exam this weekend'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-6749355352926631191</id><published>2009-03-11T18:29:00.000-07:00</published><updated>2009-03-11T18:33:31.964-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='http://www.Twitter.com/CheriSigmon'/><title type='text'>Let's connect on Twitter</title><content type='html'>Let's connect on Twitter:&lt;br /&gt;&lt;br /&gt;http://www.Twitter.com/CheriSigmon&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-6749355352926631191?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.twitter.com/CheriSigmon' title='Let&apos;s connect on Twitter'/><link rel='enclosure' type='' href='http://www.twitter.com/CheriSigmon' length='0'/><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/6749355352926631191/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=6749355352926631191' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/6749355352926631191'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/6749355352926631191'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2009/03/lets-connect-on-twitter.html' title='Let&apos;s connect on Twitter'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-6247843664067932188</id><published>2008-12-15T14:13:00.000-08:00</published><updated>2008-12-15T14:26:26.847-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Voice-Mail Security'/><title type='text'>AT&amp;T, T-Mobile Fined For Voice-Mail Security</title><content type='html'>AT&amp;T, T-Mobile Fined For Voice-Mail Security &lt;br /&gt;&lt;br /&gt;After a string of high-profile hacks, the Los Angeles district attorney has filed an injunction against the carriers for overstating the security of their voice-mail systems. &lt;br /&gt;&lt;br /&gt;(By Marin Perez, InformationWeek, December 12)&lt;br /&gt;&lt;br /&gt;AT&amp;T (NYSE: T) and T-Mobile have paid fines and agreed to stop advertising that their voice-mail systems are safe from hackers. In a permanent injunction filed in a Los Angeles court Thursday, District Attorney Steve Cooley said the wireless operators were overstating how secure their voice mails are. The settlements are the culmination of year-long investigation that was launched after multiple complaints of unauthorized voice-mail access, including some from celebrities Paris Hilton and Lindsay Lohan. &lt;br /&gt;&lt;br /&gt;For full story, see Information Week.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-6247843664067932188?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.informationweek.com/news/security/attacks/showArticle.jhtml?articleID=212500153&amp;cid=RSSfeed_IWK_All' title='AT&amp;T, T-Mobile Fined For Voice-Mail Security'/><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/6247843664067932188/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=6247843664067932188' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/6247843664067932188'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/6247843664067932188'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/12/at-t-mobile-fined-for-voice-mail.html' title='AT&amp;T, T-Mobile Fined For Voice-Mail Security'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-621934812554445760</id><published>2008-09-02T21:30:00.000-07:00</published><updated>2008-09-02T21:44:03.371-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='gaming'/><title type='text'>Online game demons are far from virtual</title><content type='html'>See "Online game demons are far from virtual," an article in the Baltimore sun.  Interesting reading.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://www.baltimoresun.com/technology/bal-bz.ml.consuming31aug31,0,5912300.column&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-621934812554445760?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.baltimoresun.com/technology/bal-bz.ml.consuming31aug31,0,5912300.column' title='Online game demons are far from virtual'/><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/621934812554445760/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=621934812554445760' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/621934812554445760'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/621934812554445760'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/09/online-game-demons-are-far-from-virtual.html' title='Online game demons are far from virtual'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-8738713034153253388</id><published>2008-08-18T03:25:00.000-07:00</published><updated>2008-12-15T14:33:28.723-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Got Access?'/><title type='text'>Got Access?</title><content type='html'>Got Access?&lt;br /&gt;&lt;br /&gt;http://www.cherisigmon.com?GotAccess&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-8738713034153253388?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.cherisigmon.com?GotAccess' title='Got Access?'/><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/8738713034153253388/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=8738713034153253388' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/8738713034153253388'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/8738713034153253388'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/08/access.html' title='Got Access?'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-3869652727551732621</id><published>2008-03-23T17:41:00.000-07:00</published><updated>2008-03-23T17:49:56.020-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Pen Testers'/><category scheme='http://www.blogger.com/atom/ns#' term='Testing'/><category scheme='http://www.blogger.com/atom/ns#' term='White Hat'/><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec'/><category scheme='http://www.blogger.com/atom/ns#' term='Penetration'/><title type='text'>White Hat Penetration Testing, Pen Testers, InfoSec,</title><content type='html'>WhiteHat Sentinel, a non-intrusive way to pen test applications (no affiliation).&lt;br /&gt;&lt;br /&gt;Link: http://www.whitehatsec.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-3869652727551732621?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.whitehatsec.com' title='White Hat Penetration Testing, Pen Testers, InfoSec,'/><link rel='enclosure' type='' href='http://www.whitehatsec.com' length='0'/><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/3869652727551732621/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=3869652727551732621' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/3869652727551732621'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/3869652727551732621'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/03/white-hat-penetration-testing-pen.html' title='White Hat Penetration Testing, Pen Testers, InfoSec,'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-4073034176193071537</id><published>2008-03-12T02:36:00.000-07:00</published><updated>2008-03-12T02:39:40.125-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='pii'/><category scheme='http://www.blogger.com/atom/ns#' term='identity theft'/><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec'/><category scheme='http://www.blogger.com/atom/ns#' term='personal information'/><category scheme='http://www.blogger.com/atom/ns#' term='Information Security'/><category scheme='http://www.blogger.com/atom/ns#' term='privacy'/><title type='text'>8 Tips To Avert ID Theft During Tax Time (MarketWatch article)</title><content type='html'>Sorry I haven't posted in a while... I've been very busy at work and I actually took a couple of fun trips to Florida.  Good morning!  Here are some handy tips at tax time, with a view to avoiding Identity Theft.  See this article at MarketWatch (USA):&lt;br /&gt;&lt;br /&gt;"Eight tips to avert ID theft during tax time" - MarketWatch - USA&lt;br /&gt;&lt;br /&gt;For added security use certified mail. Permanently shred unsecured documents from your computer that contain personal information used to prepare your tax...&lt;br /&gt;&lt;br /&gt;http://www.marketwatch.com/news/story/eight-ways-avert-id-theft/story.aspx?guid=%7BC51C7BDB-40C1-45FF-B78A-077310E44DAE%7D&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-4073034176193071537?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.marketwatch.com/news/story/eight-ways-avert-id-theft/story.aspx?guid=%7BC51C7BDB-40C1-45FF-B78A-077310E44DAE%7D' title='8 Tips To Avert ID Theft During Tax Time (MarketWatch article)'/><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/4073034176193071537/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=4073034176193071537' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/4073034176193071537'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/4073034176193071537'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/03/8-tips-to-avert-id-theft-during-tax.html' title='8 Tips To Avert ID Theft During Tax Time (MarketWatch article)'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-4988439154496784340</id><published>2008-01-17T23:55:00.000-08:00</published><updated>2008-01-18T00:02:04.080-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='consultants'/><category scheme='http://www.blogger.com/atom/ns#' term='morin'/><category scheme='http://www.blogger.com/atom/ns#' term='marketing'/><category scheme='http://www.blogger.com/atom/ns#' term='internet'/><category scheme='http://www.blogger.com/atom/ns#' term='practice'/><category scheme='http://www.blogger.com/atom/ns#' term='armand'/><title type='text'>Marketing Your InfoSec Consulting Practice</title><content type='html'>http://internetmarketingexplained.com/x.php?af=425288&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-4988439154496784340?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.therelaunch.com/after.php?af=425288' title='Marketing Your InfoSec Consulting Practice'/><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/4988439154496784340/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=4988439154496784340' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/4988439154496784340'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/4988439154496784340'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/01/marketing-your-infosec-consulting.html' title='Marketing Your InfoSec Consulting Practice'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-4779826820974209693</id><published>2008-01-07T14:36:00.000-08:00</published><updated>2008-01-07T14:42:18.836-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Speakers'/><category scheme='http://www.blogger.com/atom/ns#' term='officers'/><category scheme='http://www.blogger.com/atom/ns#' term='ISSA'/><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec'/><category scheme='http://www.blogger.com/atom/ns#' term='IA'/><category scheme='http://www.blogger.com/atom/ns#' term='chapter'/><title type='text'>InfoSec business and speaker in Phoenix... ISSA connection</title><content type='html'>If you're in Phoenix or you need an InfoSec speaker to come to your area, see this web site:  &lt;a href="http://www.sapphire-security.com" target="_new"&gt;Sapphire Security&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The owner is the President of the ISSA Phoenix Chapter.&lt;br /&gt;&lt;br /&gt;Protect yourself,&lt;br /&gt;Cheri Sigmon&lt;br /&gt;ISSA-NoVA&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-4779826820974209693?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/4779826820974209693/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=4779826820974209693' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/4779826820974209693'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/4779826820974209693'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/01/infosec-business-in-phoenix-issa.html' title='InfoSec business and speaker in Phoenix... ISSA connection'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-3775419779605238833</id><published>2008-01-07T01:57:00.000-08:00</published><updated>2008-01-07T01:59:29.185-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec'/><category scheme='http://www.blogger.com/atom/ns#' term='http://www.squidoo.com/infosecissp'/><category scheme='http://www.blogger.com/atom/ns#' term='New Squidoo Lens'/><category scheme='http://www.blogger.com/atom/ns#' term='CISSP'/><title type='text'>New Squidoo Lens - InfoSec CISSP</title><content type='html'>Check out my new Squidoo lens:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.squidoo.com/infosecissp"&gt;http://www.squidoo.com/infosecissp&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-3775419779605238833?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/3775419779605238833/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=3775419779605238833' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/3775419779605238833'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/3775419779605238833'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/01/new-squidoo-lens-infosec-cissp.html' title='New Squidoo Lens - InfoSec CISSP'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-5616280401509582369</id><published>2008-01-07T01:56:00.000-08:00</published><updated>2008-01-07T01:57:29.823-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SANS'/><category scheme='http://www.blogger.com/atom/ns#' term='Mpack'/><category scheme='http://www.blogger.com/atom/ns#' term='exploits'/><category scheme='http://www.blogger.com/atom/ns#' term='reading'/><title type='text'>Exploitation Kits Revealed - Mpack</title><content type='html'>Exploitation Kits Revealed - Mpack&lt;br /&gt;Category: Malicious Code. SANS Information Security Reading Room - &lt;br /&gt;&lt;br /&gt;http://www.sans.org/reading_room/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-5616280401509582369?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/5616280401509582369/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=5616280401509582369' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/5616280401509582369'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/5616280401509582369'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/01/exploitation-kits-revealed-mpack.html' title='Exploitation Kits Revealed - Mpack'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-3592836813540033360</id><published>2008-01-04T00:24:00.000-08:00</published><updated>2008-01-04T00:30:25.084-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='simpleology'/><category scheme='http://www.blogger.com/atom/ns#' term='web 2.0'/><category scheme='http://www.blogger.com/atom/ns#' term='blogs'/><category scheme='http://www.blogger.com/atom/ns#' term='Mark Joyner'/><category scheme='http://www.blogger.com/atom/ns#' term='blogging'/><title type='text'>Evaluating a new course on blogging from Simpleology...</title><content type='html'>&lt;div id="simpleology_blog_12a1c68e5d563fe3917423353fb06be2"&gt;&lt;p&gt;I'm evaluating a &lt;br /&gt;&lt;a href="http://www.simpleology.com/training/blogging/index.php" target="_new"&gt;multi-media&lt;/a&gt; course on &lt;b&gt;blogging&lt;/b&gt; from the folks at Simpleology.  For a while, they're letting you &lt;b&gt;&lt;a href="http://www.simpleology.com/training/blogging/index.php" target="_new"&gt;snag&lt;/a&gt; it for free&lt;/b&gt; if you post about it on your blog.&lt;/p&gt;&lt;p&gt;It covers:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;The best blogging techniques.&lt;/li&gt;&lt;li&gt;How to get traffic to your blog.&lt;/li&gt;&lt;li&gt;How to turn your blog into money.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;I'll let you know what I think once I've had a chance to check it out. Meanwhile, go grab yours while it's still free... - Regards, Cheri&lt;/p&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-3592836813540033360?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/3592836813540033360/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=3592836813540033360' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/3592836813540033360'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/3592836813540033360'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2008/01/evaluating-new-course-on-blogging-from.html' title='Evaluating a new course on blogging from Simpleology...'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-2718005736804729681</id><published>2007-12-17T04:47:00.000-08:00</published><updated>2007-12-17T04:49:42.815-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='MySQL'/><category scheme='http://www.blogger.com/atom/ns#' term='Passwords'/><category scheme='http://www.blogger.com/atom/ns#' term='tools'/><category scheme='http://www.blogger.com/atom/ns#' term='roboform'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><title type='text'>Passwords - Windows, MySQL, other articles</title><content type='html'>1. Resetting a Lost MySQL PasswordBy Yaakov Ellis Due to my inexperience administering anything having to do with Linux, while trying to reset the root password, I accidentally put in some bad information into the password field (I forgot to use the password() function to generate ...Ellis Web - &lt;a href="http://ellisweb.net/"&gt;http://ellisweb.net/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;2. HMRC advertises for security expertsBy dizzy(dizzy) Interesting job advert for "IT Security Risk Consultants", working in a Government department, mostly in Essex at the location of HMRC offices. So much for security procedures being in place and just not being followed. ...Dizzy Thinks - &lt;a href="http://dizzythinks.net/"&gt;http://dizzythinks.net/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;3. Show your Windows users the strength of their passwords as they type and change them! Filter your users new passwords, and enforce strong ones! NO MORE WEAK PASSWORDS!Digg / Security / upcoming - &lt;a href="http://digg.com/security"&gt;http://digg.com/security&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Enjoy reading.&lt;br /&gt;&lt;br /&gt;Regards,&lt;br /&gt;Cheri&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-2718005736804729681?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/2718005736804729681/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=2718005736804729681' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/2718005736804729681'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/2718005736804729681'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2007/12/passwords-windows-mysql-other-articles.html' title='Passwords - Windows, MySQL, other articles'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-943268817615982467</id><published>2007-12-13T02:13:00.001-08:00</published><updated>2007-12-13T02:25:55.584-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='online'/><category scheme='http://www.blogger.com/atom/ns#' term='Information Security'/><category scheme='http://www.blogger.com/atom/ns#' term='article'/><title type='text'>New Article about Online Security...</title><content type='html'>Just posted a new short article about Online Security at this URL:&lt;br /&gt;&lt;em&gt;&lt;br /&gt;&lt;a href="http://jitvideos.info/OnlineSecurity.html" target="_new"&gt;http://JITVideos.info/OnlineSecurity.html&lt;/a&gt; &lt;/em&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-943268817615982467?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/943268817615982467/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=943268817615982467' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/943268817615982467'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/943268817615982467'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2007/12/new-article-about-online-security.html' title='New Article about Online Security...'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-1910543997843308396</id><published>2007-12-11T16:16:00.000-08:00</published><updated>2007-12-11T16:43:26.347-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Speakers'/><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec'/><category scheme='http://www.blogger.com/atom/ns#' term='IA'/><category scheme='http://www.blogger.com/atom/ns#' term='(ISC)2'/><category scheme='http://www.blogger.com/atom/ns#' term='Information Security'/><category scheme='http://www.blogger.com/atom/ns#' term='Events Calendar'/><title type='text'>Upcoming Global InfoSec Events (you can earn CPE's)...</title><content type='html'>Here are some upcoming InfoSec Events around the globe:&lt;br /&gt;&lt;br /&gt;1. SEMAFOR Security, Management, Audit Forum&lt;br /&gt;22-23 January 2008&lt;br /&gt;Hotel Marriott, Warsaw, Poland&lt;br /&gt;&lt;br /&gt;2. John Colley, Managing Director of (ISC)2 EMEA, will be among the numerous Information Security Professionals to deliver a presentation at the second SEMAFOR Forum on January 22-23.&lt;br /&gt;&lt;br /&gt;3. Infosecurity Italia&lt;br /&gt;5-7 February 2008&lt;br /&gt;Fieramilanocity, Milan, Italy&lt;br /&gt;&lt;br /&gt;Earn CPEs at Italy’s most important and comprehensive information security exhibition. The event features informative conference sessions along with a top-level continuing education program devoted to information management as well as an exhibit featuring the latest technologies and solutions. Visit (ISC)2 at booth E22.&lt;br /&gt;&lt;br /&gt;4. Secur Middle East Congress&lt;br /&gt;18-19 February, 2008&lt;br /&gt;JW Marriott Hotel, Dubai, UAE&lt;br /&gt;&lt;br /&gt;Join (ISC)2 at this 2-Day conference covering the latest developments in securing wireless technology, identification and authentication, hacking and threat counter-measures, network security for corporate defense, and enterprise and security architecture. (ISC)2 members are offered a 15% discount and can earn up to 12 CPEs.&lt;br /&gt;&lt;br /&gt;5. Infosecurity Belgium21-22 March 2008Brussels Kart, Brussels, Belgium&lt;br /&gt;&lt;br /&gt;Visit (ISC)2 at stand C075 and earn CPEs by attending the seminar tracks at this 2-Day event. This year, (ISC)2 will be offering the opportunity to take certification exams (CISSP, SSCP, and concentration exams) at the event on 21 March, 2008. For registration information, please visit (ISC)2 's &lt;a href="http://www.isc2.org/"&gt;web site (http://www.isc2.org/)&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Perhaps you can attend one of these events. (I'm not "affiliated" with any event, (ISC)2 corporate, event sponsors, or companies).  This is a non-commercial post, provided as a simple courtesy to fellow IA professionals across geographic boundaries.&lt;br /&gt;&lt;br /&gt;Regards,&lt;br /&gt;Cheri Sigmon, CISSP&lt;br /&gt;&lt;br /&gt;---&lt;br /&gt;&lt;br /&gt;&lt;script type="text/javascript"&gt;&lt;!--&lt;br /&gt;google_ad_client = "pub-3208108428404586";&lt;br /&gt;//250x250, created 12/11/07&lt;br /&gt;google_ad_slot = "0646016735";&lt;br /&gt;google_ad_width = 250;&lt;br /&gt;google_ad_height = 250;&lt;br /&gt;//--&gt;&lt;/script&gt;&lt;br /&gt;&lt;script type="text/javascript"&lt;br /&gt;src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;&lt;br /&gt;&lt;/script&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-1910543997843308396?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/1910543997843308396/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=1910543997843308396' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/1910543997843308396'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/1910543997843308396'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2007/12/here-are-some-upcoming-infosec-events.html' title='Upcoming Global InfoSec Events (you can earn CPE&apos;s)...'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-1690393856195958293</id><published>2007-12-11T15:57:00.000-08:00</published><updated>2007-12-11T16:56:26.388-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Study Guides'/><category scheme='http://www.blogger.com/atom/ns#' term='Shon Harris'/><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec'/><category scheme='http://www.blogger.com/atom/ns#' term='IA'/><category scheme='http://www.blogger.com/atom/ns#' term='(ISC)2'/><category scheme='http://www.blogger.com/atom/ns#' term='SSCP'/><category scheme='http://www.blogger.com/atom/ns#' term='Information Security'/><category scheme='http://www.blogger.com/atom/ns#' term='CBK'/><category scheme='http://www.blogger.com/atom/ns#' term='certification'/><category scheme='http://www.blogger.com/atom/ns#' term='CISSP'/><title type='text'>Summary: The Domains of the Common Body of Knowledge (CBK) for CISSP and SSCP certs</title><content type='html'>Part A, CISSP knowledge areas&lt;br /&gt;&lt;br /&gt;These are the Common Body of Knowledge (CBK) "Ten Domains" WRT the CISSP certification:&lt;br /&gt;&lt;br /&gt;1. Access Control&lt;br /&gt;   &lt;br /&gt;2. Application Security&lt;br /&gt;&lt;br /&gt;3. Business Continuity and Disaster Recovery Planning&lt;br /&gt;   &lt;br /&gt;4. Cryptography&lt;br /&gt;&lt;br /&gt;5. Information Security and Risk Management&lt;br /&gt;   &lt;br /&gt;6. Legal, Regulations, Compliance, and Investigations&lt;br /&gt;&lt;br /&gt;7. Operations Security&lt;br /&gt;  &lt;br /&gt;8. Physical (Environmental) Security&lt;br /&gt;&lt;br /&gt;9. Security Architecture and Design&lt;br /&gt;&lt;br /&gt;10. Telecommunications and Network Security&lt;br /&gt;&lt;br /&gt;---&lt;br /&gt;&lt;br /&gt;Part B, SSCP knowledge areas&lt;br /&gt;&lt;br /&gt;Here are the Common Body of Knowledge (CBK) "Seven Domains" WRT the SSCP certification:&lt;br /&gt;&lt;br /&gt;1. Access Control&lt;br /&gt;&lt;br /&gt;2. Analysis and Monitoring&lt;br /&gt;&lt;br /&gt;3. Cryptography&lt;br /&gt;&lt;br /&gt;4. Malicious Code and Other Attacks&lt;br /&gt;&lt;br /&gt;5. Networks and Telecommunications&lt;br /&gt;&lt;br /&gt;6. Risk, Response, and Recovery&lt;br /&gt;&lt;br /&gt;7. Security Operations and Administration&lt;br /&gt;&lt;br /&gt;I hope this helps you, as a brief introduction.  For details, go directly to the source, (ISC)2.  ;-)&lt;br /&gt;&lt;br /&gt;NOTE:  WRT training options, I personally found the "Yellow Book" and the CISSP Prep Guide by  Shon Harris to be the most helpful, along with a 10-week study group via the Information Systems Security Association, (ISSA), &lt;a href="http://www.issa-nova.org/"&gt;http://www.issa-nova.org/&lt;/a&gt; and &lt;a href="http://www.issa-hr.org/"&gt;http://www.issa-hr.org/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Regards,&lt;br /&gt;Cheri Sigmon, CISSP&lt;br /&gt;&lt;br /&gt;&lt;script type="text/javascript"&gt;&lt;!--&lt;br /&gt;google_ad_client = "pub-3208108428404586";&lt;br /&gt;//125x125, created 12/11/07&lt;br /&gt;google_ad_slot = "0258262677";&lt;br /&gt;google_ad_width = 125;&lt;br /&gt;google_ad_height = 125;&lt;br /&gt;//--&gt;&lt;/script&gt;&lt;br /&gt;&lt;script type="text/javascript"&lt;br /&gt;src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;&lt;br /&gt;&lt;/script&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-1690393856195958293?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/1690393856195958293/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=1690393856195958293' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/1690393856195958293'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/1690393856195958293'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2007/12/summary-domains-of-common-body-of.html' title='Summary: The Domains of the Common Body of Knowledge (CBK) for CISSP and SSCP certs'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-5140171276988201955</id><published>2007-12-11T15:47:00.000-08:00</published><updated>2007-12-11T16:29:27.344-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='course'/><category scheme='http://www.blogger.com/atom/ns#' term='InfoSec'/><category scheme='http://www.blogger.com/atom/ns#' term='IA'/><category scheme='http://www.blogger.com/atom/ns#' term='training'/><category scheme='http://www.blogger.com/atom/ns#' term='guides'/><category scheme='http://www.blogger.com/atom/ns#' term='CPE'/><category scheme='http://www.blogger.com/atom/ns#' term='CBK'/><category scheme='http://www.blogger.com/atom/ns#' term='certification'/><category scheme='http://www.blogger.com/atom/ns#' term='CISSP'/><title type='text'>Annc: (ISC)2 Special Events and Offers for InfoSec professionals</title><content type='html'>For the latest special events and offers from (ISC)2, see this announcement:&lt;br /&gt;&lt;br /&gt;InfoSec Special Events and Offers (Follow the links below for more details):&lt;br /&gt;&lt;br /&gt;1. &lt;a title="Advanced Certification Review Classes" href="http://cl.exct.net/?ju=fe2f15767462037d711172&amp;amp;ls=fdf4117770650d7d7514777c&amp;amp;m=ff2313797362&amp;amp;l=fe9d16707d64047971&amp;amp;s=fdfc15707c62007877147576&amp;amp;jb=ffcf14&amp;amp;t="&gt;Advanced Certification Review Classes&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;2. &lt;a title="The Ultimate Self-Study Package" href="mailto:institute@isc2.org?subject=ultimate%20self-study%20package" alias="The Ultimate Self-Study Package" conversion="false"&gt;The Ultimate Self-Study Package&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;3. &lt;a title="(ISC)2 eLearning CPEs " href="http://cl.exct.net/?ju=fe2e15767462037d711173&amp;amp;ls=fdf4117770650d7d7514777c&amp;amp;m=ff2313797362&amp;amp;l=fe9d16707d64047971&amp;amp;s=fdfc15707c62007877147576&amp;amp;jb=ffcf14&amp;amp;t="&gt;(ISC)2 eLearning CPEs&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;4. &lt;a title="Global events from (ISC)2" href="http://cl.exct.net/?ju=fe2d15767462037d711174&amp;amp;ls=fdf4117770650d7d7514777c&amp;amp;m=ff2313797362&amp;amp;l=fe9d16707d64047971&amp;amp;s=fdfc15707c62007877147576&amp;amp;jb=ffcf14&amp;amp;t="&gt;Global events from (ISC)2&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;5. &lt;a title="The Official (ISC)2 Guide to the CISSP® CBK®" href="http://cl.exct.net/?ju=fe2b15767462037d711176&amp;amp;ls=fdf4117770650d7d7514777c&amp;amp;m=ff2313797362&amp;amp;l=fe9d16707d64047971&amp;amp;s=fdfc15707c62007877147576&amp;amp;jb=ffcf14&amp;amp;t="&gt;The Official (ISC)2 Guide to the CISSP® CBK®&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a title="IANS - Pacific Information Security Forum" href="http://cl.exct.net/?ju=fe2a15767462037d711177&amp;amp;ls=fdf4117770650d7d7514777c&amp;amp;m=ff2313797362&amp;amp;l=fe9d16707d64047971&amp;amp;s=fdfc15707c62007877147576&amp;amp;jb=ffcf14&amp;amp;t="&gt;&lt;/a&gt;NOTE:  I am not affiliated with (ISC)2, except as a certified professional. This information is provided merely for your convenience, and I receive no profits from sharing this with you... &lt;s&gt;&lt;br /&gt;&lt;br /&gt;&lt;/s&gt;&lt;s&gt;&lt;/s&gt;Regards,&lt;br /&gt;Cheri Sigmon, CISSP&lt;br /&gt;&lt;br /&gt;p.s. Next, I'll give you a list of the 10 domains in the Common Body of Knowledge (CBK), for those who are interested in getting started with the certification process. See the next post...&lt;br /&gt;&lt;br /&gt;&lt;script type="text/javascript"&gt;&lt;!--&lt;br /&gt;google_ad_client = "pub-3208108428404586";&lt;br /&gt;//250x250, created 12/11/07&lt;br /&gt;google_ad_slot = "0646016735";&lt;br /&gt;google_ad_width = 250;&lt;br /&gt;google_ad_height = 250;&lt;br /&gt;//--&gt;&lt;/script&gt;&lt;br /&gt;&lt;script type="text/javascript"&lt;br /&gt;src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;&lt;br /&gt;&lt;/script&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-5140171276988201955?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/5140171276988201955/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=5140171276988201955' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/5140171276988201955'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/5140171276988201955'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2007/12/annc-isc2-special-events-and-offers-for.html' title='Annc: (ISC)2 Special Events and Offers for InfoSec professionals'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5272895070333572329.post-6410920160392340666</id><published>2007-12-09T03:02:00.000-08:00</published><updated>2007-12-09T03:17:24.197-08:00</updated><title type='text'>Welcome to the InfoSec and CISSP Community Blog...</title><content type='html'>Welcome to the InfoSec and CISSP Community Blog...&lt;br /&gt;&lt;br /&gt;If you are planning to take the CISSP exam or you have already been certified for the CISSP information security (InfoSec) certification by (ISC)2, this is the place for you.&lt;br /&gt;&lt;br /&gt;Also, it is intended for people who just want to learn more about information security and good security practices in order to protect themselves and their loved ones, etc. Your feedback, files, and posts are welcome.&lt;br /&gt;&lt;br /&gt;See these links:&lt;br /&gt;&lt;br /&gt;1. If you want to prepare for the exam: (ISC)2 &lt;a href="http://www.isc2.org/"&gt;http://www.isc2.org/&lt;/a&gt; and CCCure &lt;a href="http://www.cccure.org/"&gt;http://www.cccure.org/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;2. If you want to watch InfoSec YouTube videos on demand:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.jitvideos.info/"&gt;http://www.jitvideos.info/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Regards,&lt;br /&gt;Cheri Sigmon, CISSP&lt;br /&gt;Blogger: InfoSec&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5272895070333572329-6410920160392340666?l=infosecissp.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://infosecissp.blogspot.com/feeds/6410920160392340666/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5272895070333572329&amp;postID=6410920160392340666' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/6410920160392340666'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5272895070333572329/posts/default/6410920160392340666'/><link rel='alternate' type='text/html' href='http://infosecissp.blogspot.com/2007/12/welcome-to-infosec-and-cissp-community.html' title='Welcome to the InfoSec and CISSP Community Blog...'/><author><name>Cheri Sigmon [@DoxieDenDiva]</name><uri>http://www.blogger.com/profile/07899151708502660484</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='28' src='http://3.bp.blogspot.com/_cMv4arzQmtc/SUYVkVolbmI/AAAAAAAAAB0/hY3LTbu1vGE/S220/Cheri7_9790.png'/></author><thr:total>0</thr:total></entry></feed>
