Showing posts with label Irfahn Khimji. Show all posts
Showing posts with label Irfahn Khimji. Show all posts

Tuesday, January 23, 2018

What is Configuration Drift?

In my last post, I talked about how ensuring devices on your network is a great way to minimize the attack surface of your infrastructure. Organizations like the Center for Internet Security (CIS) provide guidelines on how to best configure operating systems to minimize the attack surface. The CIS calls these “benchmarks.” Many security policies […]… Read More

The post What is Configuration Drift? appeared first on The State of Security.

The post What is Configuration Drift? appeared first on Security Boulevard.



from What is Configuration Drift?

Wednesday, January 3, 2018

It’s 2018, Secure Your Budgets with Secure Configurations!

Happy 2018, everyone! With the start of a new year, everyone makes resolutions that they may or may not be able to keep. One of the most common New Year’s resolutions (and arguably the most difficult to keep) is to exercise, get healthy, and/or lose weight. This is a common thread in businesses, as well, […]… Read More

The post It’s 2018, Secure Your Budgets with Secure Configurations! appeared first on The State of Security.

The post It’s 2018, Secure Your Budgets with Secure Configurations! appeared first on Security Boulevard.



from It’s 2018, Secure Your Budgets with Secure Configurations!

Tuesday, April 4, 2017

Vulnerability Metrics: The Final Frontier

In Part 1 of this series, we looked at some of the metrics that an executive team would want to see to identify how the business risk is trending. It is very important to keep in mind that if the business does not see the information security program as effective and efficient, they will not […]… Read More

The post Vulnerability Metrics: The Final Frontier appeared first on The State of Security.



from Vulnerability Metrics: The Final Frontier

Tuesday, March 28, 2017

Turning Data into Metrics – A Vulnerability Story

One of the main issues I find across the information security industry is that we constantly need to justify our existence. IT has been the traditional cost centre, but businesses have slowly realized they need to spend on IT to enable their businesses. Information security, on the other hand, is the team that is constantly […]… Read More

The post Turning Data into Metrics – A Vulnerability Story appeared first on The State of Security.



from Turning Data into Metrics – A Vulnerability Story

Monday, January 30, 2017

Authoritative Asset Repository: What’s That?!

A Configuration Management Database (CMDB) is a repository that is an authoritative source of information of what assets are on the corporate network. At least, that’s what it’s supposed to be. However, in many of my recent discussions , the more common definition given for CMDB is “a struggle”. Does that sound familiar? If so, […]… Read More

The post Authoritative Asset Repository: What’s That?! appeared first on The State of Security.



from Authoritative Asset Repository: What’s That?!