This question was made by Martin McKeay during a Panel on RSA (Avoding the “Security Groundhog Day”, hosted by Mike Rothman). I took a note at that moment because the answer came to me immediately: Half of the companies are not doing that because their customers don’t ask for it The other half uses Security [...]
I’m looking at some leaflets that a got from some vendors at the RSA Expo. I’ve just caught this on one of them: “included signature-based anomaly detection capabilities” WTF is that!?!?! Can anyone explain to me what is “signature-based anomaly detection”?
Writing this while waiting to board my return flight to Sao Paulo. It’s good to write after a few hours far from the conference, as it gives me a better view of what really impressed me most. I agree with other bloggers that mentioned the lack of innovation this year. However, it was expected. I [...]
This second day of RSA was quite interesting. Not exactly because of the presentations, almost everything that I saw today was very shallow and nothing new. I can mention a honorable exception, “Sins of Our Fathers”, with Daniel Houser, Hugh Thompson and Benjamin Jun. Good speakers and good (although not new) content. The best part [...]
Well, after 17 months, my Canadian imigration process is finally entering its final steps. That’s right. I’m moving to Canada, more specifically, Toronto. I’ll try to use this week on RSA to find potential employers. If you work for a security company in Toronto (GTA) and know that they are looking for a security consultant, [...]
I finally arrived at San Francisco. Luckly, in time for the Cryptographers panel. Some interesting thoughts from the big brains. Shamir said that security losses are concentrated in low and high level attacks. Media, however, only shows the high level ones. Schneier presentation was also very good. He blogged about it. From his talk I [...]
I was reading a great post from Hoff that describes what he and Richard Mogull are envisioning as the next evolution of security solutions. Hoff says: “What CMMP represents is the evolved and converged end-state technology integration of solutions that today provide a point solution but “tomorrow” will be combined/converged into a larger suite of [...]
My article about “Security Blind Spots” has just been published at April’s ISSA Journal. I haven’t received my issue yet, but it is available at the site. Please let me know what you think about it!