Sunday, March 21, 2010

Bookmark and Share

Archive for the ‘Tarot’ Category

The Security Tarot: Trump 1, The Fool

I’ve decided to have a little bit of fun today, since talking about the same topic every day can be boring without putting different spins on it. And it’s Friday after all. Anyway, today I’m kicking off a “Security Tarot” series where we examine infosec through the lens of the tarot. I’ll post these as they seem relevant and illustrated by happenings in the industry – maybe they’ll get posted quickly, maybe slowly, maybe not at all. Anyway, here goes.

The first trump in our security tarot deck is the “The Fool.” Signifying infinite and limitless possibility, the fool is characterized by opposing forces, unpredictability, and anarchy. What the fool lacks is clarity of purpose and direction. Is he walking into danger or on the road to greatness? Who can say: it is the beginning of his journey and the destination is undefined.

The Fool is a force we see every day in security. Lack of clarity? We see it all the time – we don’t have clarity around how to analyze the threats we’re bombarded with, we don’t have clarity about the metrics we gather (if any,) we don’t have clarity around the research we do, and we don’t have clarity about the terminology that we use to talk to each other. To prove that this force is at work, I don’t have to reach beyond today’s headlines; consider, for example, the Finjan Web Security Trends Report (published last week) and compare it to the ScanSafe Global Threat Report published yesterday. ScanSafe says, “ScanSafe reported that Web viruses decreased 47% in September, despite recent high profile Microsoft vulnerabilities…” while “Finjan

Bookmark and Share
“Benefit from targeted intelligence and customized comprehensive research.”
Blog Cloud

The Law: Fear It Administrative Cruft (16)
Analysts (31)
Apple (25)
AppSec (12)
Assessments (2)
Auditors (2)
Biometrics (4)
Blogs (13)
Breaches (21)
Buzzwords (2)
By Grabthar's Hammer!! (1)
Certifications (1)
Change Management (1)
Cheezburger Network (1)
Chupacabra (1)
Cloud Computing Security (4)
Collaborative Strategy Guild (2)
Compliance (4)
Copyright (9)
Credit Cards (3)
Crypto (11)
CXO Summit 2010 (1)
Cyberterrorism (2)
Data Protection (2)
DHS (25)
eBay (1)
Emergence (1)
End-to-End Encryption (2)
England (1)
Financial Fraud (1)
FISAP (1)
Forensics (5)
FTC Red Flad Rules (1)
FUD (12)
gnisreveR (2)
Google (2)
Holidays! (3)
Humor (16)
Identity Theft (4)
James Bond Shiz (1)
Legal Shiz (13)
Linux (3)
Malware (35)
Marketing and PR (9)
Messaging Security (1)
Microsoft (26)
Monoculture (3)
Mouth-Frothing (2)
Musings (17)
Open Source (3)
Oracle (21)
Outsourcing (4)
Paris Hilton (1)
Passwords (1)
PCI (4)
Phish-Eye (8)
Phones (5)
Planes (1)
Privacy (1)
Programming (1)
QDSP Blues (15)
Research (30)
Resources (6)
Rhesus Monkeys (2)
Risk Management (18)
RSA 2009 (1)
RSA 2010 (1)
SAML (1)
SAN (1)
SC Mag Blues (1)
SCADA (1)
Security Curve (8)
SecurityCurve Speaking (2)
SIEM and Log Management (5)
Social Networking (1)
SOX (1)
Speaking (2)
Spinach (1)
Spy Stuff (1)
Stealing Stuff (8)
Storage (1)
Symantec (7)
Tarot (1)
Teleological suspension of the ethical (3)
The Great Borack (1)
The Law: Fear It (10)
The Old Man of the Mountain (1)
The Regs (5)
Tokenization (1)
Useless Shizz (13)
Vendors (37)
Virtual Worlds (2)
Voting (2)
Vulnerabilities (40)
Walt Disney (2)
Wi-Fi (16)

WP Cumulus Flash tag cloud by Roy Tanck and Luke Morton requires Flash Player 9 or better.

Archives