The Cookie Dough Model of Cybersecurity
2024-02-24
Cookie dough can be both delicious and dangerous. So can computers. What can we learn from the delectable dessert? Read More
Cookie dough can be both delicious and dangerous. So can computers. What can we learn from the delectable dessert? Read More
The English language is full of words that we often use interchangeably, but have subtle differences in meaning that can, if well understood, have significant impacts. For example, security and safety. Today I'm going to focus on fact and truth. Read More
Tarah Wheeler pointed out a SXSW panel titled “Can Diplomacy Save The Internet?” featuring Nathaniel Fick (the U.S.’s top technology diplomat). This brought up some thoughts that I’ve been having (and discussing with my coworkers) for a while about the backgrounds of people in some of the highest leadership positions of technical organizations. Read More
Information Security is a field with lots of certifications. And lots of certification study methods. I’ve experienced everything from the person who knows all the memory devices and will ensure you know the material you need to know, to the “instructor” who could barely read off the vendor-provided slides.
However, GIAC is relatively unique in that a) their material is more tightly controlled – you can’t really walk into a book store and take your pick of study guides, the way you can with, say, Security+ or CISSP, and b) their exams are open book. Read More