By Ron Woerner In his recent ComputerWorld article (http://www.computerworld.com/blogs/node/4425?source=NLT_SIC&nlid=92), Michael Farnum spells out the need for IT folks to be “people†people. Being an asshole no longer works. (See Bob Sutton’s blog.) Marcus Ranum and Bruce Schneier have been saying it for years that security is about the people and process not the technology. They [...]
Security Catalyst 39 – Voting Security Series – Transparent and Open Voting with Punchscan
As we continue our voting security series, I was intriqued by a solution that promises “Transparent, High Integrity, Open Source Elections” and decided to do some research. Well, the solution, called Punch Scan (http://www.punchscan.org/) is a well-designed solution that leverages unique paper ballots and cryptography. The more I learn, the more I want to know [...]
Security Catalyst 38 | Voting Security Mini-Series Gets Launched – 3 Things I Learned from ‘Hacking Democracy’
Now that the elections are over, I figured it was a good time to step up the programming of the podcast by introducing some mini-series. I think mini-series will provide us the opportunity to pick topics that matter and dive a bit deeper. At least, we’re going to give it a try… feedback welcomed. To [...]
Horseless Carriages and Whale Interpreters
This post was submitted to me via email from a good friend and colleague who understands the effort and wanted to continue the post I started yesterday. Someday we should convince Rich to blog with us on a regular basis! Horseless Carriages and Whale Interpreters Good progress. I thought you were going a different direction [...]
Security 2.0, The Horseless Carriage, and the Drive to Change the World
In the 1890s and into the early part of the 20th Century, a new way of travel was born. Initially called a “horseless carriageâ€, this mode of transportation eventually changed the way that people practiced transportation. Ironically, I doubt that you refer to the vehicle you have in your driveway or garage as a “horseless [...]
Santarcangelo Versus Symantec (Security 2.0)
I’m already working on he post explaining Security 2.0 and the new names we are considering; too many people have spent good time working on a new framework to help improve the way we practice and advance information security. And the reason I mention we is that while this started as my musings, it is [...]
I’ll be at Tech Crunch Meetup 8 in NYC tonight
Security 2.0 is about breaking down silos – do you do it?
As I continue to explain and expand Security 2.0 through coaching, consulting and training/speaking, I have been stressing the need for businesses to take a multi-disciplinary approach to the way we practice security. While this approach is central to who I am, I have also started spending more time studying other areas (design, drawing, photography, [...]
Do you know what you’re signing?
I’m amazed at the number of people who blindly sign contracts. You don’t do that with your own blank checks, do you? Still, here we go again. The day before an important contract is to be signed (by my company), someone (wisely) decided it needed to have a quick “review by security.â€Â I shouldn’t complain, at least [...]
Security Catalyst 36 – SPECIAL REPORT: Did Two Factor Authentication Really Fail?
Welcome back! Yeah, I know, that’s better said to me than by me. The complications of travel, life and podcasting have conspired against me, but not dimished my passion, the expansion of the blog or the re-creation of the catalyst community. In this episode, I introduce a new segment: “sites to see” and start pointing [...]



Engage with Michael Santarcangelo