The InfoSec Blog

System Integrity: Without Integrity you don’t have Security

November 25th, 2009

Why don’t companies apply more risk analysis - Part 2

And while on that subject …

“Consult Human Resources when making disaster recovery plans”

Every DR plan I’ve seen has failed to take into account human factors.
The most basic of which is that if there is any one of a large number of disaster scenarios, how are staff going to get in to the DR site?

360-degree panorama of Toronto, Canada, as see...
Image via Wikipedia

So: here we are in Toronto and the DR site is in Arizona
what sort of disaster will take out Toronto and let all the staff here track down to Arizona in order to run the IT services to support the customers in, guess where?
Right: Toronto Read the rest of this entry »

November 25th, 2009

Why don’t companies apply more risk analysis?

November 25th, 2009

Unfortunately, SNMPv2 is not secure

November 18th, 2009

How much would you give up your laptop for?

November 13th, 2009

The Cost of patching

November 6th, 2009

Speil Chequers

|