It’s time to reboot the security industry

It seems that this year has been dominated by negativity: we have focused on month’s of bugs, slammed colleagues and users and even tried to prove through science that people don’t understand risk. In fact, many in our industry seem quick to point out that everything is wrong, nothing works…. and that’s not very comforting. [...]

What do you think the future of how we practice security looks like? Join our experiment in mind-mapping

I am a visually driven person. I think in non-linear ways, and have a 4′x8′ whiteboard in my office that I use several times a day. Mind mapping, therefore, is a natural fit for me. As a speaker, I’m generally impressed by those who also mind map. If you are also visual, you may find [...]

software should be social; security and the protection of information personal

I am a believer in the power of “media 2.0″ (or whatever name you happen to like calling it). I really enjoyed reading All Software Should Be Social – it really hit home with me in terms of thinking about how to create a more personal approach to really anything. This quote really made sense [...]

How do you approach security (or other) speakers?

It’s no secret that I am an “expert who speaks on the topic of preventing breaches and protecting information” (notice how that was crafted – I’m not a speaker, I’m an expert who speaks. We can argue about the meaning of expert later – but I’m certainly passionate!). I love what I do – and [...]

Google Apps Premier Launches – does this mean security takes a hit? You bet it does (so what do do about it)?

Well, the big announcement last week and through the weekend was that Google Apps Premier launched. This is a chance for companies to leverage the power of “office tools” from anywhere and is set to foster more effective collaboration. On a personal level, I use (and like) Google docs, so I can see the draw. [...]

Seth Godin explains why he’s not surprised – would I be if I came to your security team?

Seth Godin has an brief, insightful post about what we have come to expect from different organizations. His conclusion is that while in life, most things don’t and shouldn’t surprise us, if we want to stand out, we have to be a surprise. Read “I’m not surprised” – but put it in the context of [...]

I have a confession to make…

I’ve been carrying this burden around for years… See, I believe in our users. I believe in their brilliance. I believe they just want to get their job done. And throughout my career, I have also believed that by getting engaged, we can make a difference. I have never really engaged in “user bashing” and [...]

Another view: “Not selling, but marketing”

Yesterday I wrote about the need to consider how we sell security – and mentioned a bit about marketing, selling, etc. Well, ‘arthur’ at Emergent Chaos (great blog, btw), posted a more succinct view today, called “Not Selling, but Marketing.” Take a read here: http://www.emergentchaos.com/archives/2007/02/not_selling_but_marketing.html And it was Kathy Sierra that gave me that awesome [...]

Marketing is essential to your success. Here are ten tips to improving your security success!

I’ve been sharing more about effective communication and marketing – and the importance that it has for those of us who practice security (well, for anyone, really). I heard a great quote the other day, but I don’t recall who it is attributed to (sorry): “Marketing should be education, education should be marketing.” Turns out [...]

Marketing and Selling Security

If you are a security professional, then whether you like it or not, you are in a position of sales and marketing. The challenge we face has always been deeper than figuring out what to do — we have to be able to effectively communicate that to our managers, our colleagues and our users/clients. I [...]