Richard Bejtlich Talks Business Security Strategy, US Security Policy
A video posting form Dark reading titled “Richard Bejtlich Talks Business Security Strategy, US Security Policy” by Richard Bejtlich
Chief security strategist of FireEye talks at the Dark Reading News Desk at Black Hat about what should really be driving your security department’s strategy. Plus he discusses law enforcement agencies’ efforts to put backdoors in encryption solutions and how the government is responding to technology’s improved abilities to provide attribution for cybercrime.
to see the video click here:
Why Did A Security Firm Mysteriously Ditch a ‘Privacy’ Product?
A posting from Forbes by Yael Grauer titled “Why Did A Security Firm Mysteriously Ditch a ‘Privacy’ Product?” :
Two weeks after Ben Caudill announced that he’d built a $200 hardware proxy which allows Internet users to mask their location, the Rhino Labs owner shut down his project. His much anticipated August appearance at DEF CON, the annual hacker convention in Las Vegas where he planned on selling the device at cost, was cancelled as well.
“People are always going to speculate despite what I say and don’t say,” Caudill told me when I asked him about the theory that he cancelled the project and talk for media attention. Although he repeatedly declined to offer details on the circumstances surrounding the cancellation, he pointed out that not all press is good press, and that the company had invested time and resources into the project. “The actual result of cancelling was for more negative than going through with it would have been,” he added, pointing out that a lot of time and energy and material costs were put into the project, which he worked on with a small team for about a year.
to read more click here:
Cloud & The Security Skills Gap
An informative video on cloud and the security skill gap from Darkreading.com
F5 Network security evangelist David Holmes offers concrete advice about how cloud outsourcing can help companies with a talent shortfall solve three enterprise security problems: application security, penetration testing, and bug bounties.
To look at the video click here:
3 Steps To Keep Down Security’s False-Positive Workload
A posting from Dark reading on Steps To Keep Down Security’s False-Positive Workload:
Security needs to be better automated, but while detecting attackers is great, all too often automation means that security teams are left with chasing down a list of security events that turn out not to be an attack but unexpected system, network, or user behavior.
These “false positives” are the bane of most machine-learning systems: valid e-mail messages blocked by anti-spam systems, unexploitable software defects flagged by software analysis systems, and normal application traffic identified as potentially malicious by an intrusion detection system. First-generation security information and event management (SIEM) systems, for example, would often deliver lists of potential “offenses” to security teams, leading to a lot of work in wild goose chases, says Jay Bretzmann, market segment manager for security intelligence at IBM Security Systems.
To read more click here:
MANDIANT NAMES RICHARD BEJTLICH CHIEF SECURITY OFFICER, SECURITY SERVICES ARCHITECT
| From a MANDIANT Press Release:
Bejtlich, one of the most influential voices on incident response and computer forensics, joins MANDIANT from General Electric where he served as Director of Incident Response and leader of GE’s Computer Incident Response Team.
Alexandria, Va., March 17, 2011 – MANDIANT, the leader in incident response and computer forensics solutions and services for government, defense and enterprise organizations, today announced that Richard Bejtlich will join the MANDIANT executive management team as Chief Security Officer and Security Services Architect, effective April 1. Bejtlich joins MANDIANT after four years at General Electric, where he served as Director of Incident Response and led GE’s Computer Incident Response Team (CIRT). “MANDIANT is rapidly expanding its high-end threat detection and response managed service offering, and is focused on building global security operation centers to address the proliferation of targeted attacks,” said MANDIANT President and Chief Operating Officer Travis Reese. “We are excited to have Richard join our executive team to architect additional offerings and focus on protecting our own enterprise.”
Prior to GE, Bejtlich operated TaoSecurity LLC as an independent consultant, protected national security interests for ManTech Corporation’s Computer Forensics and Intrusion Analysis division, investigated intrusions as part of Foundstone’s incident response team, and monitored client networks for Ball Corporation. “A priority for MANDIANT in 2011 is to expand the team and the capabilities we use to defend our customers and our company,” Bejtlich said. “Organizations across the globe depend on MANDIANT to protect their information from an array of digital threats. I welcome the challenge posed by my new role, and the opportunity to join this distinguished group.” Bejtlich began his digital security career as a military intelligence officer at the Air Force Computer EmergencyResponse Team (AFCERT), Air Force Information Warfare Center (AFIWC), and Air Intelligence Agency (AIA). A graduate of Harvard University and the United States Air Force Academy, Bejtlich is the author of both The Tao of Network Security Monitoring and Extrusion Detection, and co-author of Real Digital Forensics. He also writes for his blog taosecurity.blogspot.com and teaches for Black Hat. About MANDIANT MANDIANT is the information security industry’s leading provider of incident response and computer forensics solutions and services. Headquartered in Alexandria, Va., with offices in New York, Los Angeles and San Francisco, MANDIANT provides products, professional services and education to Fortune 500 companies, financial institutions, government agencies, domestic and foreign police departments, and leading U.S. law firms. MANDIANT comprises one of the industry’s largest incident response and forensics forces. The authors of nine books, and quoted frequently by leading media organizations, MANDIANT security consultants and engineers hold top government security clearances and certifications and advanced degrees from some of the most prestigious computer science universities. To learn more about MANDIANT visit www.mandiant.com, read M-Unition, the company blog: http://blog.mandiant.com, follow on Twitter @MANDIANT or on Facebook at www.facebook.com/mandiantcorp.
###
Contacts:
Anne M. Mroczynski Senior Director of Marketing, MANDIANT 703.224.2926
Jim Engineer e-Rainmaker PR for MANDIANT 630.728.1387
|
Interesting links
Here are some interesting links for you! Enjoy your stay :)Pages
Categories
- Child Safety
- Cloud Security
- CMMC
- Compliance
- Computer Forensics
- Conference
- CSI: Cyber Recap
- Cyber Resilia
- Cyber Resilience
- Cyber Resiliency
- Documentary
- Education
- Events
- Featured
- Frontpage Article
- General Security
- Hack
- Headline
- How-to
- Images
- Incident Response
- Infographic
- International Security
- Internet Safety
- Interview
- IT Certifications
- Linux
- Mac OS X
- Malware
- Mobile Security
- News
- OSINT
- Podcast
- Privacy
- Publications
- RESILIA
- Review
- Security Advisory
- Security Defitions
- Security Job
- Security Magazine
- Security Practitioners
- STEM
- The SecurityOrb Show
- Top 5
- Training
- Uncategorized
- Video
- Vulnerability
- Vulnerability & Threat Report
- Vulnerability Assessment
- Web Security
- Windows Security
- Wireless Security
Archive
- May 2026
- October 2024
- November 2023
- September 2023
- July 2023
- April 2023
- September 2022
- March 2022
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- September 2020
- April 2020
- March 2020
- February 2020
- January 2020
- August 2019
- July 2019
- March 2019
- February 2019
- December 2018
- November 2018
- October 2018
- September 2018
- August 2018
- July 2018
- June 2018
- May 2018
- April 2018
- March 2018
- February 2018
- January 2018
- June 2017
- May 2017
- March 2017
- February 2017
- January 2017
- November 2016
- October 2016
- September 2016
- August 2016
- July 2016
- May 2016
- April 2016
- March 2016
- February 2016
- January 2016
- November 2015
- October 2015
- September 2015
- August 2015
- July 2015
- June 2015
- May 2015
- April 2015
- March 2015
- February 2015
- January 2015
- December 2014
- November 2014
- October 2014
- September 2014
- August 2014
- July 2014
- June 2014
- May 2014
- April 2014
- March 2014
- February 2014
- January 2014
- December 2013
- November 2013
- October 2013
- September 2013
- August 2013
- July 2013
- June 2013
- May 2013
- April 2013
- March 2013
- February 2013
- January 2013
- December 2012
- November 2012
- October 2012
- September 2012
- August 2012
- July 2012
- June 2012
- May 2012
- April 2012
- March 2012
- February 2012
- January 2012
- December 2011
- November 2011
- October 2011
- September 2011
- August 2011
- July 2011
- June 2011
- May 2011
- April 2011
- March 2011
- February 2011
- January 2011
- December 2010
- November 2010
- October 2010
- September 2010
- August 2010
- July 2010
- June 2010
- May 2010
- March 2009
