Whats on your security agenda for 2017?
When we plan for what can be achieved in any given year, we often over estimate what we can achieve and under estimate the resources needed to achieve it. This is true for most aspects of work and life (think unfinished home renovations and pilot projects that become production) and is certainly true for security.
The end of fear-based messaging
‘There is no terror in the bang, only in the anticipation of it’. Alfred Hitchcock said that…. He knew a thing or two about evoking fear. Fear is often used to will people into taking action that they otherwise wouldn’t – for example fear-based messaging has been used for years (who knew that before Listerine, no one was worried about bad breath…no one). When it comes to fear-based messaging… security is no exception.
A Christmas Tale
It’s been the Christmas season for a while if you believe the elevator music, the tinsel draped around store doorways and the brief pause in hot-cross bun sales.
It’s a time of year when projects are due to close, budgets are under pressure and there are more parties than you can poke a stick at. All these things, and probably more, have got data loss written all over them….
Security +1…
Have you noticed when you go to networking lunches and conferences, you meet a lot of like-minded, passionate people? Like earlier this week at the Australian Women in Security Network (AWSN) Lunch for November - I looked around the room and thought….what a fabulous bunch of security-focussed friends, experts, professionals.
What’s your agenda?
Securing your business can be overwhelming especially when starting from scratch. Once your organisation has identified a need to make information security part of the way you do business, how do you get started? Should you seek a deep-dive risk assessment? Should you consider a three-year strategic implementation of security controls? Should you hire a Head of Information Security?
Slip, Slop, Slap...Security??
Since 1980 (…a great year), as a country we have embraced the young Seagull Sid telling us to slip on a shirt, slop on some sunscreen and slap on a hat. In more recent years, the Cancer Council brought in the SunSmart Schools program (which quirkily added seek some shade and slide on your sunnies) requiring Australian SunSmart Schools to have a written sun protection policy to achieve accreditation. A fantastic initiative....
3 reasons your security staff can't be all things to all people
It’s become apparent lately while reading through security job ads that most security people are required to be jacks of all trades. Compliance people need to also be security people. Or the fraud guy also needs to be the information security leader. Or the Head of Information Security also needs to be analysing the security event logs. Businesses are seeking one problem solver who can literally solve all the security problems.
The evolution of #securityawareness
The first Australian information security awareness conference takes place next week. It’s right here in Melbourne and run by a dedicated bunch called Security, Influence and Trust.
Top 3 reasons why you shouldn’t hire security staff in your own image…
As humans, we tend to gravitate towards people who are like us. Those who think like us, talk like us, socialise like us and fight the good fight….like us. When it comes to security, as leaders, here’s three good reasons to avoid hiring people in our own image…
You know what they say about assumptions…
The instructions were clear. Line up across the room with one end being no knowledge of coaching to the other side of the room being 100%, couldn’t be clearer on why to coach, how to coach and every specific of coaching practice. Our group of 20 shuffled around the conference room to form a line across the front, laughing at the bunched up group of people (fence sitters) hovering around the ‘50’ mark.