<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.7.3" -->
<rss version="2.0">
	<channel>
		<title>Blog entries</title>
		<description>Blog entries</description>
		<link>http://www.cissp.com</link>
		<lastBuildDate>Sat, 04 Feb 2012 14:29:19 +0100</lastBuildDate>
        <generator>FeedCreator 1.7.3</generator>
		<item>
			<title>CISSP results</title>
			<link>http://www.cissp.com/security-blogs/exam-resultshtml</link>
			<description>&lt;p&gt;The CISSP exam was a challenge --&amp;nbsp; but the hard part is what remains to be done.&amp;nbsp; Work that most clearly qualifies me is work I did before 1992.&amp;nbsp; Like many engineers who earned their degree when writing in machine code was part of earning the degree, I'm looking for a way to meet (ISC)2 audit requirements.&amp;nbsp; A job description didn't exist. If it did, I didn't know it. &amp;nbsp;&lt;/p&gt;&lt;br/&gt;&lt;p&gt;My name appears in two RTCA documents as a member of each Special Committee.&amp;nbsp; RTCA, Inc....</description>
			<author>John Crout</author>
			<pubDate>Tue, 31 Jan 2012 18:47:12 +0100</pubDate>
		</item>
		<item>
			<title>(not just) Android -- Security Enhanced Android </title>
			<link>http://www.cissp.com/security-blogs/seandroidhtml</link>
			<description>&lt;p&gt;This reminded me of product-specific security  discussion, comparing iPhone with Android.&lt;/p&gt;&lt;br/&gt;&lt;p&gt;http://www.voiceofgreyhat.com/2012/01/national-security-agency-nsa-released.html&lt;/p&gt;&lt;br/&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;</description>
			<author>John Crout</author>
			<pubDate>Sun, 22 Jan 2012 23:15:52 +0100</pubDate>
		</item>
		<item>
			<title>NIST needs our comments</title>
			<link>http://www.cissp.com/security-blogs/nist-wants-to-know-what-we-think-lets-tell-themhtml</link>
			<description>&lt;p&gt;NIST has a wiki and internal document about Cloud Security. They're asking the Cloud Security Working Group for comments until the end of this month.&amp;nbsp; Join the group and lend your expertise.&lt;/p&gt;&lt;br/&gt;&lt;p style=&quot;margin-bottom: 0in&quot;&gt;The name of the document we are submitting comments about until the end of the month is, &quot;NIST Cloud Computing Challenging Security Requirements for USG Adoption of Cloud Computing&quot;).&amp;nbsp; We also write for the wiki. The wiki has two document lists and a section wit...</description>
			<author>John Crout</author>
			<pubDate>Fri, 23 Dec 2011 05:21:08 +0100</pubDate>
		</item>
		<item>
			<title>Silently pushing updates</title>
			<link>http://www.cissp.com/security-blogs/silently-pushing-updateshtml</link>
			<description>&lt;p&gt;If you've read the latest hype from media sites about Microsoft's plan to silently push updates for IE, or if you use Google Chrome and allow silent updates, you might want to reconsider your objectives.&amp;nbsp; According to NIST and DISA checklists, automated updates are not acceptable.&amp;nbsp;&lt;/p&gt;&lt;br/&gt;&lt;p&gt;Allowing any automated activity warrants consideration of what Microsoft calls &quot;automated&quot;.&amp;nbsp;&amp;nbsp; Nothing distorts language like &quot;marketing spin&quot;.&amp;nbsp; For example, &quot;automated&quot; updates in XP...</description>
			<author>John Crout</author>
			<pubDate>Tue, 20 Dec 2011 20:18:04 +0100</pubDate>
		</item>
		<item>
			<title>My thirst for an job in the field of information security</title>
			<link>http://www.cissp.com/security-blogs/my-thirst-for-an-job-in-the-field-of-information-securityhtml</link>
			<description>&lt;p style=&quot;text-align: left;&quot;&gt;I Am Bharanidharan from india&lt;br /&gt;&lt;br /&gt;i have been completed certifications such as&amp;nbsp;&lt;br /&gt;&lt;br /&gt;CEH V7 from EC Council&lt;br /&gt;&lt;br /&gt;AFCEH V5 from AnkitFadia&lt;br /&gt;&lt;br /&gt;and i really have an thirst of knowledge in this field..&lt;br /&gt;&lt;br /&gt;i'm ready to improve the growth of the organisation by my steady progress in this information security field.&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;&lt;br/&gt;&lt;p style=&quot;text-align: left; padding-left: 30px;&quot;&gt;&amp;nbsp;&lt;/p&gt;</description>
			<author>Bharanidharan</author>
			<pubDate>Sun, 04 Dec 2011 01:47:39 +0100</pubDate>
		</item>
		<item>
			<title>IT security spending versus the overall IT budget</title>
			<link>http://www.cissp.com/security-blogs/it-security-spending-versus-the-overall-it-budgethtml</link>
			<description>&lt;p&gt;What  is the estimate of&amp;nbsp; IT security spending versus the overall IT budget of  an average company or some companies you know?&lt;/p&gt;</description>
			<author>Marvin Ama</author>
			<pubDate>Sun, 20 Nov 2011 14:35:21 +0100</pubDate>
		</item>
		<item>
			<title>Positive Day</title>
			<link>http://www.cissp.com/security-blogs/positive-dayhtml</link>
			<description>&lt;p&gt;Arnold M was kind to engage me in a conversation, I can see a great depth of knowledge and look forward to understanding the dynamics and norms of this site.&lt;/p&gt;&lt;br/&gt;&lt;p&gt;I look forward to meeting more people and hopefully I can be of assistance to someone at some point.&lt;/p&gt;&lt;br/&gt;&lt;p&gt;:)&lt;/p&gt;</description>
			<author>Bryan Gutzman</author>
			<pubDate>Wed, 06 Jul 2011 18:31:24 +0100</pubDate>
		</item>
		<item>
			<title>The Start</title>
			<link>http://www.cissp.com/security-blogs/the-starthtml</link>
			<description>I am new to CISSP but not new to Information Assurance. I have tons to learn and looking forward to the adventure.</description>
			<author>Bryan Gutzman</author>
			<pubDate>Tue, 05 Jul 2011 23:47:41 +0100</pubDate>
		</item>
		<item>
			<title>Test Taking Strategie......</title>
			<link>http://www.cissp.com/security-blogs/test-taking-strategiehtml</link>
			<description>&lt;p&gt;I'm leaning that is takes a lot of study time and being consumed by the material.&lt;br /&gt;&lt;br /&gt;You have to live it each day.&amp;nbsp; Crack the BOOKS!&amp;nbsp; No Boot Camp will help if you&lt;br/&gt;have not put the time into Study.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/p&gt;</description>
			<author>fern bowers</author>
			<pubDate>Thu, 09 Jun 2011 19:33:03 +0100</pubDate>
		</item>
		<item>
			<title>Verizon or AT&amp;T - iPhone faster on AT&amp;T 3G network</title>
			<link>http://www.cissp.com/security-blogs/verizon-or-att-iphone-faster-on-att-3g-networkhtml</link>
			<description>&lt;p&gt;AT&amp;amp;T iPhones may have connectivity issues, but test outcomes show that iPhones on AT&amp;amp;T's 3G network have quicker connections than Verizon iPhones. AT&amp;amp;T iPhones were twice as fast as Verizon iPhones when speeds were measured on their respective 3G networks. Verizon iPhones may be much slower than iPhones on AT&amp;amp;T's 3G network, but with regards to dependability, AT&amp;amp;T iPhones dropped calls during the tests, just as people expected they would. Resource for this article - Choosi...</description>
			<author>sally porter</author>
			<pubDate>Tue, 10 May 2011 09:46:51 +0100</pubDate>
		</item>
		<item>
			<title>Murphy's fourth law of Computer Security</title>
			<link>http://www.cissp.com/security-blogs/murphys-fourth-law-of-computer-securityhtml</link>
			<description>&lt;p&gt;Research is part of the cycle of success;&lt;/p&gt;&lt;br/&gt;&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; The field of information security is immense, within the CISSP there are ten domains and they translate well for the most part mapping to critical areas of IT Security, but not the be it an end all of knowledge. The Common Body of Knowledge or the CBK is&amp;nbsp; a template and guide that each Security Professional can use to direct his or her research into the field, it is not a bullet proof ...</description>
			<author>Arnold Murphy</author>
			<pubDate>Sun, 06 Mar 2011 15:07:12 +0100</pubDate>
		</item>
		<item>
			<title>Murphy's Law's of computer security 3rd law</title>
			<link>http://www.cissp.com/security-blogs/murphys-laws-of-computer-security-3rd-lawhtml</link>
			<description>&lt;p&gt;Vigilance is the key concept of security&lt;/p&gt;&lt;br/&gt;&lt;p&gt;Risk is a factor of functionality, the more functional a system is the less risk it is inherently exposed to. With networked computer systems, Security is built in at the concept stage in many way's but the key is to deliver the functionality of the services consistently. Delivering functionality sometimes involves inherent risk, such as running an application which delivers the functionality required but which may be susceptible to attack. This...</description>
			<author>Arnold Murphy</author>
			<pubDate>Mon, 21 Feb 2011 13:54:51 +0100</pubDate>
		</item>
		<item>
			<title>A little bit of hope for disabled Veterans and Cyber Security </title>
			<link>http://www.cissp.com/security-blogs/a-little-bit-of-hope-for-disabled-veterans-and-cyber-security-html</link>
			<description>&lt;p&gt;This program is a very worthwhile cause, if your company has an opportunity to participate I highly recommend you lobby them to do so. There is no greater sacrifice than that of a soldier's life, and in many ways Veterans return home to re-enter the work force without the resources and skills to be successful this program provides some of those. Security of the Free World and the Global Market is dependent upon the engagement of our entire society.&lt;/p&gt;</description>
			<author>Arnold Murphy</author>
			<pubDate>Sat, 29 Jan 2011 02:46:52 +0100</pubDate>
		</item>
		<item>
			<title>A Murphy's laws of computer security 2</title>
			<link>http://www.cissp.com/security-blogs/a-murphys-laws-of-computer-security-2html</link>
			<description>&lt;p&gt;2. Size Matters&lt;/p&gt;&lt;br/&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;br/&gt;&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; When we consider the capacity of machines to decrypt and encrypt messages or data we must take into consideration the size and capability of our cryptosystem. While it is true that large keys today are rated as secure, the more processor power applied to the problem the quicker the problem will be solved. With the advent of cloud computing we can see that resources are cheap and...</description>
			<author>Arnold Murphy</author>
			<pubDate>Tue, 18 Jan 2011 22:11:26 +0100</pubDate>
		</item>
		<item>
			<title>A Murphy's laws of computer security</title>
			<link>http://www.cissp.com/security-blogs/a-murphys-laws-of-computer-securityhtml</link>
			<description>&lt;p&gt;Welcome to my blog, I plan on making this a regular sort of thing, but as with all good plans something may come up. So be prepared, plans are more than just a set of instructions, they are a guide, a tool, a way of confirming goals and much more.&lt;/p&gt;&lt;br/&gt;&lt;p&gt;My first of A. Murphy's laws:&lt;/p&gt;&lt;br/&gt;&lt;p&gt;1. Plans change&lt;/p&gt;&lt;br/&gt;&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Simple enough, I will explain. In security there are Risks that involve vulnerabilities to threats. These threats come in...</description>
			<author>Arnold Murphy</author>
			<pubDate>Mon, 17 Jan 2011 16:45:14 +0100</pubDate>
		</item>
		<item>
			<title>CEH Study group</title>
			<link>http://www.cissp.com/security-blogs/ceh-study-grouphtml</link>
			<description>&lt;p&gt;I was talking to someone about CEH certification. I saw there was a group here for CEH, but not a CEH study group. Is there interest in starting a group?&lt;/p&gt;</description>
			<author>troy wollenslegel</author>
			<pubDate>Sat, 04 Dec 2010 22:51:15 +0100</pubDate>
		</item>
		<item>
			<title>Welcome to CISSP.COM and the Security Professionals Network</title>
			<link>http://www.cissp.com/security-blogs/welcome-to-cisspcom-and-the-security-professionals-networkhtml</link>
			<description>&lt;p class=&quot;mceVisualAid mceVisualGuides&quot;&gt;There's a lot to do on cissp.com  and the security professionals network--so much so we thought we'd give  you are quick  tour of some of the highlights:&lt;/p&gt;&lt;br/&gt;&lt;p class=&quot;mceVisualAid mceVisualGuides&quot;&gt;Community Is  Everything&lt;/p&gt;&lt;br/&gt;&lt;p class=&quot;mceVisualAid mceVisualGuides&quot;&gt;For the community, by the   community, cissp.com and the security professionals network strives to  be the central source for informed and well  connected security  professionals.&lt;/p&gt;&lt;br/&gt;&lt;p class=...</description>
			<author>Andrew Afifi</author>
			<pubDate>Sun, 21 Nov 2010 16:21:10 +0100</pubDate>
		</item>
	</channel>
</rss>

