(ISC)2 Secure Metro New York

Analysis and Commentary, Field Notes and Research, Newsflashes

(ISC)2 Secure Metro New York

No Comments 04 May 2011

The CISO/CPO Partnership: Addressing Online Risks

Brightfly is pleased to announce that Managing Director of Research, Brandon Dunlap will be presenting at this exciting event brought to you jointly by (ISC)² and the International Association of Privacy Professionals (IAPP) on May 10th, 2011.

This event promises to be a day packed full of discussions on common threats and risks to online security and privacy.

In addition to Brightfly’s perspective on building “Guardrails on the Road to the Cloud”, you’ll also  hear from leading members of the security community as they address recent developments across a number of areas that include mobile communications and social media with a focus on effective techniques for ensuring online security and privacy.

This event will be held at the Sheraton Newark Airport:

128 Frontage Road
Newark, NJ
07114 

Like all Security Leadership Series events, this is a free member benefit (only $99 for non-members) and is a fantastic opportunity to connect with your peers from the metro area. 

A special thanks goes out to all of the sponsors who make this valuable learning experience possible through their continued support and contributions.

Just click the button below to register for the event. Hurry, they fill up quickly!

Register Here

Infosec10: Another Great Year in Nashville!

Field Notes and Research

Infosec10: Another Great Year in Nashville!

No Comments 20 September 2010

Once again, the Middle Tennessee chapter of the Information Systems Security Association (ISSA) and the Nashville Technology Council put on a phenomenal event. The two organizations took over the Nashville Convention Center,  hosting over 430 attendees and 28 sponsors. With over two dozen local, national and internationally recognized speakers, the breakout and keynote sessions were nearly as interesting and entertaining as the hallway conversations.

With a focus on not just technical, but also management issues, the topics spanned industry and organizational strata across the security landscape. Because of the unique blend of attendees and sponsors, this was the ideal venue to begin a discussion about how to manage security responsibility across both the hosted or cloud environment and the traditional data center.

The genesis of this discussion began during the background research phase as we prepared for the (ISC)2 Web Roundtable, “Split Responsibility in Cloud Services“,  I moderated on June 24th, 2010. As with many of the events we are involved in, we found the audience questions outstripped our time allotted, so some questions remained unanswered. In chasing down many of the answers, I uncovered yet more questions. The Infosec10 conference was a fantastic opportunity to present our current findings for feedback and gather additional insights from the attendees. I’m looking forward to hearing more from them over the coming days.

I’ll be releasing our view on managing security responsibility across the fractured enterprise later this week, after I have some follow-up conversations with the fine folks I met in Nashville. Stay tuned.

Choosing a Controls Framework – UK vs. US Perspective

Field Notes and Research

Choosing a Controls Framework – UK vs. US Perspective

No Comments 19 May 2009

Having recently compiled my notes from Infosecurity Europe 2009, I was fast on the hunt for similarities and differences between the views expressed “across the pond” and those held by the US markets. While there is longstanding acceptance about what constitutes a comprehensive and effective security program across both continents, what really stood out was how different our approaches were.

Continue Reading

Advertising Security

Field Notes and Research

Advertising Security

No Comments 22 April 2009

The problem being faced is really not so different from the age old advertising problem of reaching the right audience with the right message, at the right time. Having developed security awareness programs based upon advertising and marketing models in the past, I suggest the following:

Continue Reading

© 2011 Brightfly, Inc.

Powered by You, the Community.