d.strom, cissp, gsec, gsna on October 25th, 2007

Do you have an acceptable use policy? Acceptable use policies are often viewed as putting an unreasonable burden on employees and managers in the small business environment. These thoughts are often built on the notion that the owner/manager trusts the employees and “no one would ever do that”. Here are five reasons why the small [...]

Continue reading about Do I Need An Acceptable Use Policy?

d.strom, cissp, gsec, gsna on October 3rd, 2007

I’ve been involved in various aspects of information security in the financial and non-profit sectors since 1996, working for both medium-sized businesses (~600 employees) and small businesses. There are some significant deficiencies in the way information security is addressed within the InfoSec industry. Conferences often fall at either of two extremes. Either the focus is [...]

Continue reading about Practical Issues in Information Security